EasyManuals Logo

Juniper SYSTEM BASICS - CONFIGURATION GUIDE V 11.1.X User Manual

Juniper SYSTEM BASICS - CONFIGURATION GUIDE V 11.1.X
640 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #476 background imageLoading...
Page #476 background image
â–  Use to terminate an active SSH session.
â–  Use the show ip ssh command to determine the session identifier for the session
to terminate.
â–  Example
host1(config)#disconnect ssh 12
NOTE: You can also use the clear line vty terminal command to terminate SSH
sessions. In that case, use the show users command to determine the virtual terminal
number to specify with the clear line vty terminal command.
â–  There is no no version.
â–  See disconnect ssh.
Restricting User Access
Users who are authenticated through RADIUS or TACACS+ can be restricted to
certain sets of commands and virtual routers (VRs). The levels of access are shown
in Table 46 on page 446. For information about TACACS+, see JUNOSe Broadband
Access Configuration Guide.
Table 46: CLI User Access Levels
Commands AvailableAccess Level
disable, enable, exit, and help commands0
Level 0 commands and all other commands available in User Exec mode1
Level 1 commands and all Privileged show commands5
All commands except support and privilege change commands10
Commands that Juniper Networks Technical Support may provide and all other
commands
15
Restricting Access to Commands with RADIUS
You can use RADIUS authentication to specify a level of commands that a user is
allowed. If you do not configure RADIUS authentication for the console or virtual
terminals, all users who successfully log in are automatically granted Level 1 access.
The vendor-specific attribute (VSA) Admin-Auth-Level supports the levels of access
shown in Table 46 on page 446. In addition to VSA access level support, the software
provides access to levels 1 and 10 through the Initial-Auth-Level in the standard
RADIUS Service-Type attribute. If the RADIUS Service-Type attribute is included in
the RADIUS Access-Accept message, the standard attribute overrides any VSA setting.
446 â–  Restricting User Access
JUNOSe 11.1.x System Basics Configuration Guide

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Juniper SYSTEM BASICS - CONFIGURATION GUIDE V 11.1.X and is the answer not in the manual?

Juniper SYSTEM BASICS - CONFIGURATION GUIDE V 11.1.X Specifications

General IconGeneral
BrandJuniper
ModelSYSTEM BASICS - CONFIGURATION GUIDE V 11.1.X
CategorySoftware
LanguageEnglish

Related product manuals