User authentication Authentication groups
IX20 User Guide
874
o
read-only: provides users of this group with read-only access to the WebUI and
Admin CLI.
The default is full.
l
To disable Admin accessfor the admin group:
(config)> auth group admin acl admin enable false
(config)>
n
Shell access:
l
To enable Shell accessfor the serial group:
(config)> auth group serial acl shell enable true
(config)>
Shell accessisnot available if the Allow shell parameter has been disabled. See
Disable shell access for more information about the Allow shell parameter.
n
Serial access:
l
To enable Serial access for the admin group:
(config)> auth group admin acl serial enable true
(config)>
4. Save the configuration and apply the change
(config)> save
Configuration saved.
>
5. Type exit to exit the Admin CLI.
Depending on your device configuration, you may be presented with an Access selection
menu. Type quit to disconnect from the device.
Add an authentication group
Required configuration items
n
The accessrightsto beassigned to users that are assigned to this group.
Additional configuration items
n
Access rights to OpenVPN tunnels, and the tunnels to which they have access.
n
Access rights to captiveportals, and the portals to which they have access.
n
Access rights to query the device for Nagiosmonitoring.
To add an authentication group:
Web
1. Log into Digi Remote Manager, or log into the local Web UI asa user with full Admin access
rights.