![QTech QSR-3920 Series Скачать руководство пользователя страница 27](http://html2.mh-extra.com/html/qtech/qsr-3920-series/qsr-3920-series_configuration-manual_3334446027.webp)
Configuration manual
3. System Control and Management
27
www.qtech.ru
If enable authentication succeeds, the user enters the specified user level and the user has
execution permission of the level. To query the user level of the current user, run the show
privilege command.
If the aaa authentication enable default method is configured and a related method list is
used to enable authentication, then the related method is required for authentication,
including:
a) If aaa authentication enable default none is configured, no password is required.
b) If aaa authentication enable default line is configured, and the line password is configured,
use the password for authentication. Otherwise, the "% Error in authentication" message is
prompted, and the authentication fails.
c) If aaa authentication enable default radius is configured, Remote Authentication Dial in
User Service (RADIUS) authentication is used. Note that the enable authentication user names
for RADIUS are fixed, that is, $enab+level$. Here "level" is a number in the range of 1-15, that
is, the level that the user wants to enter. The RADIUS user names are fixed, therefore, during
authentication, no user name is required. The user needs only to input the password. If
passwords have been set for users of different levels on the RADIUS server, after inputting the
correct password, the login succeeds; otherwise, the login fails. For example, in running the
enable 10 command, the fixed user name is $enab10$. If the user name exists on the RADIUS
server, input the password corresponding to the user name, and then the authentication
succeeds.
c) If aaa authentication enable default tacacs is configured, Terminal Access Controller Access
Control System (TACACS) authentication is used. If the user name is displayed during login,
keep the user name for login, and input the enable password of the user name. Otherwise,
input a user name and the enable password of the user name. If the inputted user name exists
in the TACACS server and the enable password of the TACACS has been set, the authentication
succeeds; otherwise, the authentication fails.
The previously mentioned enable authentication methods can form a
combination in use.
Configuration Condition
None
Switch Over Between User Levels
If a user has the corresponding authority, the user can switch from the common user mode to
the privileged user mode by switching over between user levels with a command. Then, the
user has the authority of the user level. If a user runs the command in the privileged user
mode, the user level switchover is performed according to the command parameter.