EasyManuals Logo

HP 5130 EI series User Manual

HP 5130 EI series
166 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #71 background imageLoading...
Page #71 background image
64
RBAC temporary user role authorization configuration example
(HWTACACS authentication)
Network requirements
As shown in Figure 26, the switch uses local authentication for login users, including the Telnet user at
192.168.1.58. The Telnet user uses the username test@bbb and is assigned the user role level-0.
Configure the remote-then-local authentication mode for temporary user role authorization. The switch
uses the HWTACACS server to provide authentication for changing the user role among level-0 through
level-3 or changing the user role to network-admin. If the AAA configuration is invalid or the
HWTACACS server does not respond, the switch performs local authentication.
Figure 26 Network diagram
Configuration procedure
1. Configure the switch:
# Assign an IP address to VLAN-interface 2, the interface connected to the Telnet user.
<Switch> system-view
[Switch] interface vlan-interface 2
[Switch-Vlan-interface2] ip address 192.168.1.70 255.255.255.0
[Switch-Vlan-interface2] quit
# Assign an IP address to VLAN-interface 3, the interface connected to the HWTACACS server.
[Switch] interface vlan-interface 3
[Switch-Vlan-interface3] ip address 10.1.1.2 255.255.255.0
[Switch-Vlan-interface3] quit
# Enable Telnet server.
[Switch] telnet server enable
# Enable scheme authentication on the user lines for Telnet users.
[Switch] line vty 0 63
[Switch-line-vty0-63] authentication-mode scheme
[Switch-line-vty0-63] quit
# Enable remote-then-local authentication for temporary user role authorization.
[Switch] super authentication-mode scheme local
# Create the HWTACACS scheme hwtac and enter HWTACACS scheme view.
[Switch] hwtacacs scheme hwtac

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the HP 5130 EI series and is the answer not in the manual?

HP 5130 EI series Specifications

General IconGeneral
LayerLayer 3
VLANs4094
Multicast ProtocolsIGMP, PIM
Operating Temperature0°C to 45°C
ModelHP 5130 EI
Ports24 or 48 10/100/1000 ports
Uplink Ports4 x 1/10G SFP+
StackingUp to 9 switches
Power over Ethernet (PoE)PoE+ (IEEE 802.3at) on PoE+ models (JG936A, JG937A)
ManagementWeb, CLI, SNMP
MAC Address Table Size32, 000 entries
Routing ProtocolsOSPF, RIP, BGP, static routing
Operating Humidity10% to 90% (non-condensing)

Related product manuals