Chapter 18. Access Control
The following sections describe the XIV Command Line Interface (XCLI) for user
access control.
The sections are listed as follows:
v access_define(Defines an association between a user group and a host.)
v access_delete(Deletes an access control definition.)
v access_list(Lists access control definitions.)
v cr_show_console_access(Shows whether challenge-response authentication is
enabled on system consoles.)
v cr_require_console_access(Set or unset challenge-response authentication on
system consoles.)
v ldap_add_server(Adds an LDAP server definition.)
v ldap_test(Tries to authenticate a specified user against an LDAP server, based
on existing configuration)
v ldap_config_get(Displays system parameters governing user authentication
against a specified LDAP server.)
v ldap_config_set(Configures general system parameters governing user
authentication against LDAP servers)
v ldap_list_servers(Lists LDAP servers defined in the system.)
v ldap_user_list(List LDAP server users)
v ldap_mode_get(Lists LDAP-based authentication mode.)
v ldap_mode_set(Enables/disables LDAP-based authentication mode.)
v ldap_update_server(Update an existing server configuration)
v ldap_remove_server(Removes an LDAP server definition.)
v ldap_search(Runs ldapsearch utility.)
v user_define(Defines a new user. )
v user_delete(Deletes a user.)
v user_group_add_user(Adds a user to a user group.)
v user_group_create(Creates a user group.)
v user_group_delete(Deletes a user group.)
v user_group_list(Lists all user groups or a specific one.)
v user_group_remove_user(Removes a user from a user group.)
v user_group_rename(Renames a user group.)
v user_group_update(Updates a user group.)
v user_list(Lists all users or a specific user.)
v user_rename(Renames a user.)
v user_update(Updates a user.)
Adding an Access Control Definition
Defines an association between a user group and a host.
access_define user_group=UserGroup < host=HostName | cluster=ClusterName >
357