DGS-1100-06/ME Metro Ethernet Managed Switch CLI Reference Guide
215
affects the authentication result. For example, if a user enters a
sequence of methods like
tacacs
– local,
the Switch sends an
authentication request to the first
tacacs
host in the server group. If
no response comes from the server host, the Switch sends an
authentication request to the second
tacacs
host in the server group
and so on, until the list is exhausted. When the local method is used,
the privilege level is dependant on the local account privilege
configured on the Switch.
Successful login using any of these methods gives the user a
‘user’
priviledge only. If the user wishes to upgrade his or her status to the
administrator level, the user must implement the
enable admin
command, followed by a previously configured password. (
See the
enable admin
part of this section for more detailed information,
concerning the
enable admin
command.)
Parameters
default
– The default method list for access authentication, as
defined by the user. The user may choose one or more of the
following authentication methods:
radius
- Specifies that the user is to be authenticated using
the
RADIUS
protocol from the remote RADIUS
server hosts
of the RADIUS
server group
list.
local -
Specifies that the user is to be authenticated using
the local
user account
database on the Switch.
server_group <string 15>
–Specifies that the user is to be
authenticated using the server group
account
database on
the Switch.
none
– Specifies that no authentication is required to
access the Switch.
method_list_name <string 15>
– Specifies a previously created
method list name defined by the user. One or more of the following
authentication methods may be added to this method list:
radius
- Specifies that the user is to be authenticated using
the
RADIUS
protocol from a remote RADIUS server.
local
- Specifies that the user is to be authenticated using
the local
user account
database on the Switch.
server_group <string 15>
–Specifies that the user is to be
authenticated using the server group
account
database on
the Switch.
none
– Specifies that no authentication is required to
access the Switch.
Restrictions
Only Administrator or operator-level users can issue this command.
Example usage:
To configure the user defined method list ‘Trinity’ with authentication methods RADIUS and local, in that order.
DGS-1100-06/ME:5#config authen_login method_list_name Trinity method radius local
Command: config authen_login method_list_name Trinity method radius local
Success.
DGS-1100-06/ME:5#
Содержание DGS-1100-06/ME
Страница 1: ...D Link DGS 1100 06 MEVer A1 MetroEthernetManagedSwitch CLI Reference Guide V1 0 ...
Страница 2: ......
Страница 132: ...DGS 1100 06 ME Metro Ethernet Managed Switch CLI Reference Guide 120 Success DGS 1100 06 ME 5 ...
Страница 178: ...DGS 1100 06 ME Metro Ethernet Managed Switch CLI Reference Guide 166 Total Entries 0 DGS 1100 06 ME 5 ...
Страница 273: ...DGS 1100 06 ME Metro Ethernet Managed Switch CLI Reference Guide 261 ...