24
Step Command
Remarks
4.
(Optional.) Configure
password control attributes
for the user group.
•
Set the password aging time:
password-control aging
aging-time
•
Set the minimum password
length:
password-control length
length
•
Configure the password
composition policy:
password-control
composition type-number
type-number
[
type-length
type-length
]
•
Configure the password
complexity checking policy:
password-control complexity
{
same-character
|
user-name
}
check
•
Configure the maximum login
attempts and the action to take
for login failures:
password-control
login-attempt login-times
[
exceed
{
lock
|
lock-time
time
|
unlock
} ]
By default, the user group uses
the global password control
settings. For more information,
see "
."
Configuring the auto-delete feature of local users
This feature enables the device to examine the validity of local users at fixed time periods of 10
minutes and automatically delete expired local users.
To configure the auto-delete feature of local users:
Step Command
Remarks
1.
Enter system view
system-view
N/A
2.
Enable the local user
auto-delete feature.
local-user auto-delete enable
By default, the feature is disabled.
Displaying and maintaining local users and local user groups
Execute
display
commands in any view.
Task Command
Display the local user
configuration and online user
statistics.
display local-user
[
class
{
manage
|
network
} |
idle-cut
{
disable
|
enable
} |
service-type
{
ftp
|
http
|
https
|
lan-access
|
portal
|
ssh
|
telnet
|
terminal
} |
state
{
active
|
block
} |
user-name
user-name
class
{
manage
|
network
} |
vlan
vlan-id
]
Display the user group
configuration.
display user-group
{
all
|
name
group-name
}
Configuring RADIUS schemes
A RADIUS scheme specifies the RADIUS servers that the device can work with and defines a set of
parameters. The device uses the parameters to exchange information with the RADIUS servers,
including the server IP addresses, UDP port numbers, shared keys, and server types.
Содержание FlexFabric 5940 SERIES
Страница 251: ...238 ...