
Procedure
Step 1
Run:
system-view
The system view is displayed.
Step 2
Run:
aaa
The AAA view is displayed.
Step 3
Run:
local-user
user-name
password
{
simple
password
|
cipher
password
}
A local user is created and the password is configured.
NOTE
If the user name contains a domain name delimiter such as @, |, and %, the character string before the
domain name delimiter is the user name and the character string behind the domain name delimiter is the
domain name. If the user name does not contain a domain name delimiter, the entire character string is the
user name and the domain name is
default
.
Step 4
(Optional) Run:
local-user
user-name
privilege
level
level
The level of the local user is set.
By default, the level of a local user is determined by the management module. If the level of a
local user is not set in the user interface view, the user level is 0.
Step 5
(Optional) Run:
local-user
user-name
idle-timeout
minutes
[
seconds
]
The idle timeout interval of the local user is set.
Step 6
(Optional) Run:
local-user
user-name
service-type
{
8021x
|
bind
|
ftp
|
http
|
l2tp
|
ppp
|
ssh
|
telnet
|
terminal
|
web
|
x25-pad
}
*
The access type of the local user is set.
By default, a local user can use any access type.
Step 7
(Optional) Run:
local-user
user-name
ftp-directory
directory
The FTP directory that the local user can access is configured.
By default, the FTP directory of a local user is empty.
When the AR1200-S functions as an FTP server, you must configure the FTP directory that FTP
users can access. Otherwise, FTP users cannot access the AR1200-S.
Step 8
(Optional) Run:
local-user
user-name
state
{
active
|
block
}
The status of the local user is set.
By default, a local user is in active state.
The AR1200-S processes requests from users in different states as follows:
Huawei AR1200-S Series Enterprise Routers
Configuration Guide - Security
1 AAA Configuration
Issue 02 (2012-03-30)
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
7