79
Step
Command
Remarks
2.
Enter user line view or
user line class view.
•
Enter user line view:
line
{
first-number1
[
last-number1
] | {
aux
|
console
|
vty
}
first-number2
[
last-number2
] }
•
Enter user line class view:
line class
{
aux
|
console
|
vty
}
A setting in user line view applies only to
the user line. A setting in user line class
view applies to all user lines of the class.
A non-default setting in either view takes
precedence over a default setting in the
other view. A non-default setting in user
line view takes precedence over a
non-default setting in user line class view.
A setting in user line class view does not
take effect for current online users. It
takes effect only for new login users.
3.
Enable scheme
authentication.
authentication-mode
scheme
In non-FIPS mode, authentication is
disabled for console lines and password
authentication is enabled for AUX and
VTY lines by default.
In FIPS mode, scheme authentication is
enabled by default.
In VTY line view, this command is
associated with the
protocol inbound
command. If you specify a non-default
value for one of the two commands, the
other command uses the default setting,
regardless of the setting in VTY line class
view.
4.
Enable command
authorization.
command authorization
By default, command authorization is
disabled, and the commands available for
a user only depend on the user role.
If the
command authorization
command
is configured in user line class view,
command authorization is enabled on all
user lines in the class. You cannot
configure the
undo command
authorization
command in the view of a
user line in the class.
Configuration example
Network requirements
As shown in
, Host A needs to log in to the device to manage the device.
Configure the device to perform the following operations:
•
Allow Host A to Telnet in after authentication.
•
Use the HWTACACS server to control the commands that the user can execute.
•
If the HWTACACS server is not available, use local authorization.
Содержание FlexNetwork 10500 Series
Страница 139: ...130 Sysname display version ...