HP 200 Unified Threat Management (UTM) Appliance Series Guia de Início Rápido Página 140

  • Descarregar
  • Adicionar aos meus manuais
  • Imprimir
Vista de página 139
134
Ste
p
Command
Remarks
5. Configure the
authentication mode
for SSH users as
password.
For more information, see System
Management and Maintenance
Configuration Guide.
This task is required only for SSH users
who are required to provide their
usernames and passwords for
authentication.
6. Configure the user
privilege level through
the AAA module.
To use local authentication:
a. Use the local-user command
to create a local user and
enter local user view.
b. Use the level keyword in the
authorization-attribute
command to configure the
user privilege level.
To use remote authentication
(RADIUS, HWTACACS, or LDAP):
Configure the user privilege level
on the authentication server.
User either approach.
For local authentication, if you do not
configure the user privilege level, the
user privilege level is 0.
For remote authentication, if you do not
configure the user privilege level, the
user privilege level depends on the
default configuration of the
authentication server.
For more information about the
local-user and authorization-attribute
commands, see Access Control
Command Reference.
For example:
# Configure the device to use local authentication for Telnet users on VTY 1.
<Sysname> system-view
[Sysname] user-interface vty 1
[Sysname-ui-vty1] authentication-mode scheme
[Sysname-ui-vty1] quit
[Sysname] local-user test
[Sysname-luser-test] password simple 123
[Sysname-luser-test] service-type telnet
When users Telnet to the device through VTY 1, they must enter username test and password 123 . After
passing the authentication, the users can only use level-0 commands.
# Assign commands of levels 0 through 3 to the users.
[Sysname-luser-test] authorization-attribute level 3
Configuring the user privilege level directly on a user interface
To configure the user privilege level directly on a user interface that uses the scheme authentication mode:
Ste
p
Command
Remarks
1. Configure the authentication
type for SSH users as
publickey.
For more information, see System
Management and Maintenance
Configuration Guide.
Required only for SSH users who
use public-key authentication.
2. Enter system view.
system-view N/A
3. Enter user interface view.
user-interface { first-num1
[ last-num1 ] | vty first-num2
[ last-num2 ] }
N/A
4. Enable the scheme
authentication mode.
authentication-mode scheme
By default, the authentication
mode for VTY users is scheme, and
no authentication is needed for
console users.
Vista de página 139
1 2 ... 135 136 137 138 139 140 141 142 143 144 145 ... 149 150

Comentários a estes Manuais

Sem comentários