Configuring level-1 users to view global configurations on the USG2000&5000&6000

51

Configure level-1 users to view global configurations on the USG2000&5000&6000 as follows:

system-view
Enter system view, return user view with Ctrl+Z.

[USG]command-privilege level 1 view AAA display current-configuration

[USG]command-privilege level 1 view AAA display

After entering preceding commands, level-1 users can run the display current-configuration command to view global device configurations.

Other related questions:
Default levels of the USG2000&5000&6000 administrators
The default level of the administrators of all USG series is empty. You need to configure the level and permission of each user.

Accessing the interface configuration view on the USG2000&5000&6000
Perform as follows to view login interface information of the USG: system-view [FW] interface GigabitEthernet 1/0/1 [FW] display interface GigabitEthernet Note: Interface 1/0/1 is used as an example.

Viewing the administrator level on the USG2000&5000
View the administrator level on the USG2000&5000 as follows: display local-user username admin ---------------------------------------------------------------------------- Username : admin User valid-period : - Password : **************** Password valid-days : 90 State : Active Service-type : ppp web ftp telnet terminal ssh 802.1x ACL-number : - Idle-cut : No Access-limit : No Online-number : 1 MAC-address : - User-level : 15 FTP-directory : - L2tp-ip : -

Configuring telneting to other devices on the USG2000&5000&6000
USG2000&5000&6000  configure telneting to other devices as follows:

To manage other intranet devices with the firewall as a springboard, perform as follows:

telnet 192.168.101.231 
14:33:04  2011/03/26 
Trying 192.168.101.231 ... 
Press CTRL+T to abort

In this way, you can perform operations on other devices.

The USG2000 & 5000 & 6000 series is configured with port mirroring.
Note: Enabling the port mirroring feature helps to locate the network, but because the function may affect the performance of the device to a certain extent, use it with caution. After the network problem is finished, turn off port mirroring. To prevent the problem that the mirroring packets can not be received due to the different transmission rate of the interface, make sure that the transmission rate of the observing port and the mirroring port are the same. Steps 1. Run the system-view command to enter the system view. 2, the implementation of the command observing-port observing-port, configure the observation port. The observing port is a non-service interface for transmitting traffic packets that are mirrored to the port. You can observe the packets passing through the corresponding port through the observing port. Run the port-mirroring mirroring-port {both | inbound | outbound} observing-port [acl-number acl-number] command to enable port mirroring. The mirroring port is a service port for sending and receiving service packets. Before you enable port mirroring, the corresponding observing port must already be configured with the observing-port command.

If you have more questions, you can seek help from following ways:
To iKnow To Live Chat
Scroll to top