xStack® DGS-3420 Series Layer 2 Managed Stackable Gigabit Switch CLI Reference Guide
65
DGS-3420-28SC:admin#
4-7
config authen_login
Description
This command is used to configure a user-defined or default method list of authentication methods for
user login. The sequence of methods will affect the authentication result. For example, if the sequence
is first, then TACACS and local, when a user trys to login, the authentication request will be
sent to the first server host in the built-in server group. If the first server host in the
group is missing, the authentication request will be sent to the second server host in the
group, and so on. If all server hosts in the group are missing, the authentication
request will be sent to the first server host in the TACACS group. If all server hosts in a TACACS
group are missing, the local account database in the device is used to authenticate this user. When a
user logs in to the device successfully while using methods like
TACACS/XTACACS//RADIUS built-in or user-defined server groups or none, the “user”
privilege level is assigned only. If a user wants to get admin privilege level, the user must use the
“enable admin” command to promote his privilege level. But when the local method is used, the
privilege level will depend on this account privilege level stored in the local device.
Format
config authen_login [default | method_list_name <string 15>] method {tacacs | xtacacs |
| radius | server_group <string 15> | local | none}(1)
Parameters
default
– Specify the default method list of authentication methods.
method_list_name
- Specify the user-defined method list of authentication methods.
<string 15>
- Specify the user-defined method list of authentication methods. The method list
name can be up to 15 characters long.
method
- Choose the desired authentication method:
tacacs
- Specify authentication by the built-in server group TACACS.
xtacacs
- Specify authentication by the built-in server group XTACACS.
- Specify authentication by the built-in server group .
radius
- Specify authentication by the built-in server group RADIUS.
server_group
- Specify authentication by the user-defined server group.
<string 15>
- Specify authentication by the user-defined server group. The server group value
can be up to 15 characters long.
local
- Specify authentication by local user account database in the device.
none
- Specify no authentication.
Restrictions
Only Administrator-level users can issue this command.
Example
To configure a user-defined method list for user login:
Содержание xStack DGS-3420 Series
Страница 1: ...xStack DGS 3420 Series Layer 2 Managed Stackable Gigabit Switch CLI Reference Guide I ...
Страница 188: ...xStack DGS 3420 Series Layer 2 Managed Stackable Gigabit Switch CLI Reference Guide 183 ...
Страница 398: ...xStack DGS 3420 Series Layer 2 Managed Stackable Gigabit Switch CLI Reference Guide 393 DGS 3420 28SC admin ...
Страница 713: ...xStack DGS 3420 Series Layer 2 Managed Stackable Gigabit Switch CLI Reference Guide 708 ...
Страница 733: ...xStack DGS 3420 Series Layer 2 Managed Stackable Gigabit Switch CLI Reference Guide 728 DGS 3420 28SC admin ...
Страница 902: ...xStack DGS 3420 Series Layer 2 Managed Stackable Gigabit Switch CLI Reference Guide 897 ...