208 CHAPTER 11: 802.1X CONFIGURATION
Setting the Password Display Mode
Perform the following configurations in System View.
Table 217 Setting the Password Display Mode of Local Users
auto means that the password display mode will be the one specified by the user
at the time of configuring the password (see the
password command in Table 218
for reference), and cipher-force means that the password display mode of all
the accessing users must be in cipher text.
Setting the Attributes of Local Users
Perform the following configurations in Local User View.
Table 218 Setting/Removing the Attributes Concerned with a Specified User
Note the following two items when you configure these service types: SSH, Telnet
or Terminal.
â– When you configure a new service type for a user, the system adds the
requested service-type to any existing configuration. For example, if the user
previously had just Telnet access, and SSH was added, the user would now
have access to both Telnet and SSH.
â– You can set user level when you configure a service type. If you set multiple
service types and specify the user levels, then only the last configured user level
is valid. Some of the service types allow a user-privilege level to be entered as
an optional extra parameter. For example Telnet, Terminal & SSH.
Operation Command
Set the password display mode of
local users
local-user password-display-mode {
cipher-force | auto }
Cancel the configuration of
password display mode
undo local-user
password-display-mode
Operation Command
Set a password for a specified user password { simple | cipher } password
Remove the password set for the
specified user
undo password
Set the state of the specified user state { active | block }
Set a priority level for the user level level
Restore the default priority level undo level
Set a service type for the specified
user
service-type { ftp [ ftp-directory
directory ] | lan-access | { ssh |
telnet | terminal }* }
Cancel the service type of the
specified user
undo service-type { ftp [ ftp-directory
] | lan-access | { ssh | telnet |
terminal }* [ level level ] }
Configure the attributes of
lan-access users
attribute { ip ip_address | mac
mac_address | idle-cut second |
access-limit max_user_number | vlan
vlanid | location { nas-ip ip_address
port portnum | port portnum } }*
Remove the attributes defined for
the lan-access users
undo attribute { ip | mac | idle-cut |
access-limit | vlan | location }*