User authentication Authentication groups
Digi Connect IT® 16/48 User Guide
497
5. Use the show command again to verify the change:
(config)> show auth method
0 radius
1 local
(config)>
6. Save the configuration and apply the change:
(config)> save
Configuration saved.
>
7. Type exit to exit the Admin CLI.
Depending on your device configuration, you may be presented with an Access selection
menu. Type quit to disconnect from the device.
Authentication groups
Authentication groups are used to assign access rights to Connect IT 16/48 users. Three types of
access rights can be assigned:
n Admin access: Users with Admin access can be configured to have either:
l The ability to manage the Connect IT 16/48 device by using the WebUI or the Admin CLI.
l Read-only access to the WebUI and Admin CLI.
n Shell access: Users with Shell access have the ability to access the shell when logging into the
Connect IT 16/48 via ssh, telnet, or the serial console.
Shell access is not available if the Allow shell parameter has been disabled. See Disable shell
access for more information about the Allow shell parameter.
n Serial access: Users with Serial access have the ability to log into the Connect IT 16/48 device
by using the serial console.
Preconfigured authentication groups
The Connect IT 16/48 device has two preconfigured authentication groups:
n The admin group is configured by default to have full Admin access and Shell access.
Shell access is not available if the Allow shell parameter has been disabled. See Disable shell
access for more information about the Allow shell parameter.
n The serial group is configured by default to have Serial access.
The preconfigured authentication groups cannot be deleted, but the access rights defined for the
group are configurable.
This section contains the following topics:
Change the access rights for a predefined group 498
Add an authentication group 500
Delete an authentication group 504