DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide
51
Parameters
6-6 aaa authorization console
This command is used to enable authorization function for users who has logged in the console. The no form of this
command is used to disable the authorization function.
aaa authorization console
no aaa authorization console
default
When this parameter is used, the following defined method list is used as the default
method for Exec authorization.
list-name
Name of the user authorization method list. After the user-defined authorization
method list created, you can use
authorization exec
line configuration command to
apply the authorization method list to the specified terminal lines.
method
Syntax "
{local | none | group {radius | |
group_name
}}
".
Up to four methods supported:
local
- Use the local user name database for authorization.
none
- Do not perform authorization.
group
- Can be followed by radius or tacas+ or a group_name
"
group radius
" means use all RADIUS servers group
"
group
" means use all server group.
"
group
group_name
" is the specific group created via aaa group server global
configuration command.
Default
The default value is disabled.
Command Mode
Global Configuration Mode.
Command Default Level
Level: 15
Usage Guideline
It supports authorization of users logged in the NAS CLI and assignment of CLI
authority level (0-15). The aaa authorization exec function is effective on condition
that Login authentication function has been enabled. It can not enter the CLI if it fails
to enable the aaa authorization exec. You must apply the exec authorization method
to the terminal line; otherwise the configured method is ineffective.
Example
This example shows how to use the RADIUS server to authorize EXEC. After the
authorization method list, called ‘list-1’ has been created, you can use the
Authorization EXEC Line Configuration command to apply this method list to the
console, SSH, or other terminals.
DXS-3600-32S#configure terminal
DXS-3600-32S(config)#aaa authorization exec list-1 group radius
DXS-3600-32S(config)#
Parameters
None.
Default
The default option is disabled.
Command Mode
Global Configuration Mode.
Command Default Level
Level: 15
Usage Guideline
It supports to identify the users logged in from the console and from other terminals,
configure whether to authorize the users logged in from the console or not. If the
command authorization function is disabled on the console, the authorization
method list applied to the console line is ineffective.
Содержание DXS-3600-16S
Страница 1: ...CLI Reference Guide Product Model DXS 3600 Series Layer 2 3 Managed 10GbE Switch Release 1 10 ...
Страница 232: ...DXS 3600 Series 10GbE Layer 2 3 Switch CLI Reference Guide 224 ...
Страница 301: ...DXS 3600 Series 10GbE Layer 2 3 Switch CLI Reference Guide 293 ...
Страница 349: ...DXS 3600 Series 10GbE Layer 2 3 Switch CLI Reference Guide 341 ...
Страница 494: ...DXS 3600 Series 10GbE Layer 2 3 Switch CLI Reference Guide 486 ...
Страница 564: ...DXS 3600 Series 10GbE Layer 2 3 Switch CLI Reference Guide 556 ...
Страница 649: ...DXS 3600 Series 10GbE Layer 2 3 Switch CLI Reference Guide 641 ...