[Switch] Which Commands Determine the User Level

m7g
m7g  Diamond  (1)
7 years 11 months ago  View: 2009  Reply: 1
1F

If the authentication mode of the user is non-authentication, the user level is specified by the user privilege command in VTY mode.

If the authentication mode of the user is local authentication, the user level can be set in the following ways that are in descending order of priorities:

- Use the following command to set the local user level.

For earlier versions of V100R005, use the local-user user-name level level command. For V100R005 and later versions, use the local-user user-name privilege level level command.

- In the service scheme view, use the following command to set the administrator user level in the domain.

For earlier versions of V100R005, use the adminuser-priority level command. For V100R005 and later versions, use the admin-user privilege level level command.

- Use the user privilege command in VTY mode to set the user level.

 

If the authentication mode of the user is remote authentication, the user level can be set in the following ways that are in descending order of priorities:

- Send the user level from the authentication server to the switch after the authentication passes.

- In the service scheme view, use the following command to set the administrator user level in the domain.

For earlier versions of V100R005, use the adminuser-priority level command. For V100R005 and later versions, use the admin-user privilege level level command.

- Use the user privilege command in VTY mode to set the user level.

 

If remote authentication and local authentication are configured on a user, remote authentication is first configured. Then local authentication is configured. The administrator level can be set in the following ways that are in descending order of priorities:

- Send the user level from the authentication server to the switch after the authentication passes.

- Use the following command to set the local user level.

For earlier versions of V100R005, use the local-user user-name level level command. For V100R005 and later versions, use the local-user user-name privilege level level command.

- In the service scheme view, use the following command to set the administrator user level in the domain.

For earlier versions of V100R005, use the adminuser-priority level command. For V100R005 and later versions, use the admin-user privilege level level command.

- Use the user privilege command in VTY mode to set the user level.

Arvi
Arvi  Silver 
5 years 4 months ago
2F
good info