22
•
complexity checking policy:
password-control complexity
{ same-character |
user-name } check
•
Configure the maximum login
attempts and the action to take
for login failures:
password-control
login-attempt login-times
[ exceed { lock | lock-time time
|
} ]
Displaying and maintaining local users and local user groups
Execute display commands in any view.
Display the
confi
statistics.
display local-user
[
class
{
manage
|
network
} |
idle-cut
{
disable
|
enable
} |
service-type
{
ftp
|
http
|
https
|
lan-access
|
portal
|
ssh
|
telnet
|
terminal
} |
state
{
active
|
block
} |
user-name
user-name
class
{
|
} |
vlan-id ]
configuration.
display user-group
[ group-name ]
Configuring RADIUS schemes
A RADIUS scheme specifies the RADIUS servers that the device can work with and defines a set of
parameters. The device uses the parameters to exchange information with the RADIUS servers,
including the server IP addresses, UDP port numbers, shared keys, and server types.
Configuration task list
(Optional.) Configuring a test profile for RADIUS server status detection
(Required.) Creating a RADIUS scheme
(Required.) Specifying the RADIUS authentication servers
(Optional.) Specifying the RADIUS accounting servers and the relevant parameters
(Optional.) Specifying the shared keys for secure RADIUS communication
(Optional.) Specifying a VPN for the scheme
(Optional.) Setting the username format and traffic statistics units
(Optional.) Setting the maximum number of RADIUS request transmission attempts
(Optional.) Setting the status of RADIUS servers
(Optional.) Enabling the RADIUS server load sharing feature
(Optional.) Specifying the source IP address for outgoing RADIUS packets
(Optional.) Setting RADIUS timers
(Optional.) Configuring the accounting-on feature