Chapter 8
| Authentication Commands
User Accounts and Privilege Levels
– 201 –
Default Setting
The default is level 15.
The default password is “super”
Command Mode
Global Configuration
Command Usage
◆
You cannot set a null password. You will have to enter a password to change the
command mode from Normal Exec to Privileged Exec with the enable
command.
◆
The encrypted password is required for compatibility with legacy password
settings (i.e., plain text or encrypted) when reading the configuration file
during system bootup. There is no need for you to manually configure
encrypted passwords.
Example
Console(config)#enable password level 15 0 admin
Console(config)#
Related Commands
enable (81)
authentication enable (204)
username
This command adds named users, requires authentication at login, specifies or
changes a user's password (or specify that no password is required), or specifies or
changes a user's access level. Use the
no
form to remove a user name.
Syntax
username
name {
access-level
level
|
nopassword
|
password
{
0
|
7
} password}
no username
name
name - The name of the user. (Maximum length: 32 characters,
case sensitive. Maximum users: 16)
The device has two predefined users,
guest
which is assigned privilege
level
0
(Normal Exec) and has access to a limited number of commands,
and
admin
which is assigned privilege level 15 and has full access to all
commands.
access-level
level - Specifies command access privileges. (Range: 0-15)
Level 0, 8 and 15 are designed for users (guest), managers (network
maintenance), and administrators (top-level access). The other levels can
be used to configured specialized access profiles.
Level 0-7 provide the same default access privileges, all within Normal
Exec mode under the “Console>” command prompt.