40
GE Information
D.20 RIO - HARDWARE USER’S MANUAL
D.20 RIO CONFIGURATION UTILITY
CHAPTER 4: SETTING UP THE D.20 RIO
Configure authentication
From the
Authentication
menu, you can select the authentication mode and change the
system access settings.
Local authentication
mode
Local authentication makes use of files stored locally to control user authentication, as
opposed to connecting to a remote server to obtain user name and password information.
The D.20 RIO has two types of administrative users.
•
Root – Full privileges to view and modify all system settings in the D.20 RIO and run
commands through the local D.20 RIO command line interface. The root user cannot
log into remote command-line services or the D.20 RIO HMI. The Default user name is
root
and the default password is
geroot
. Only the password can be modified. See
Root Administrator Settings
, below.
•
Administrator – Supervisor-level access to all configuration, runtime, operation, and
system administration screens in the D.20 RIO HMI as well as full access to run
commands at the D.20 RIO command line interface when the
sudo
command is used.
If you are using local authentication, Administrator-level users can be created using
the D.20 RIO configuration utility. See
Administrator Group Users
, below.
TIP
If you enable local authentication mode, be sure to create at least one administrator-level
user before exiting from the D.20 RIO configuration utility. If you log out of the system
without creating any new administrator users, you will not be able to log into the D.20 RIO
remotely.
Remote
authentication mode
The D.20 RIO supports two remote authentication modes:
•
RADIUS
•
Cisco
®
RADIUS remote authentication mode requires the following settings:
•
RADIUS server address – valid IPV4 address
•
“Shared secret” as provided by the RADIUS administrator – 6 or more characters
Cisco remote authentication mode requires the following settings:
•
server address – valid IPV4 address
•
secondary server address (if enabled) – valid IPV4 address. If the primary
server does not respond, the D.20 RIO will automatically attempt to connect to the
server at this address instead.
•
Encryption – select whether to enable or disable encryption for the connection
between the D.20 RIO and the server
•
Shared secret (if enabled) – as provided by server administrator
•
Enable reporting of remote host IP address – if enabled, the D.20 RIO will report the IP
address of the D.20 RIO to the authentication server. Only enable this if you are using
an authentication server that supports this feature.
See “Remote authentication mode” on page 40. for information on configuring your
server.
Root administrator
settings
Allows you to change the password associated with the system root user account.
HMI supervisor
settings
HMI supervisors are allowed full privileges to access to all configuration, runtime,
operation and system administration screens in the D.20 RIO HMI. One default supervisor
account with the username supervisor is always available on the D.20 RIO. You can set the
password of this account using the D.20 RIO configuration utility.
Содержание D.20 RIO
Страница 6: ...6 GE Information D 20 RIO Hardware User s Manual TABLE OF CONTENTS ...
Страница 10: ...10 GE Information D 20 RIO HARDWARE USER S MANUAL SAFETY WORDS AND DEFINITIONS ABOUT THIS DOCUMENT ...
Страница 46: ...46 GE Information D 20 RIO HARDWARE USER S MANUAL REMOTE AUTHENTICATION CHAPTER 4 SETTING UP THE D 20 RIO ...
Страница 58: ...58 GE Information D 20 RIO HARDWARE USER S MANUAL SYSTEM UTILITIES CHAPTER 6 USING THE D 20 RIO ...
Страница 64: ...64 GE Information D 20 RIO HARDWARE USER S MANUAL COMPLIANCE STANDARDS APPENDIX A STANDARDS PROTECTION ...
Страница 70: ...70 GE Information D 20 RIO HARDWARE USER S MANUAL INDEX ...
Страница 72: ...72 GE Information D 20 RIO HARDWARE USER S MANUAL ...