Administration and Provisioning
8-8 Issue 8.0 July 2002
The SECURITY-Set-Security-Network Element input is used to
enable/disable nonprivileged user logins. For more information about provisioning
network element security, refer to the SECURITY-Set-Security-Network
Element input in the "Local Provisioning" part of this section.
The SECURITY-Retrieve-Security-Network Element input is used to
report whether logins are allowed or not. For information about the global security
report, refer to the SECURITY-Retrieve-Security-Network Element input
in Volume I, Section 11, "Craft Interface Terminal Usage."
Password Aging 8
In Release 4.1 and later releases, password aging provides the capability to force
users to periodically change their password. If the users do not change their
password within the provisioned period of time, their password will expire. The
next time the users attempt to login, they will not be allowed to execute any
commands until they change their password.
To enable password aging, the password aging interval must be provisioned in the
range of 7 to 999 days. To disable password aging, the password aging interval
must be provisioned to 0 days.
If password aging is enabled, a user may not change a password unless at least 7
days have passed since the last password change for that login. Any attempt to
change a password when less than 7 days have passed shall be denied.
The SECURITY-Set-Security-Network Element input is used to
enable/disable password aging and provision the password aging interval. For
more information about provisioning password aging, refer to the
SECURITY-Set-Security-Network Element input in the "Local
Provisioning" part of this section.
The SECURITY-Retrieve-Security-Network Element input is used to
report the password aging interval in days. For information about the global
security report, refer to the SECURITY-Retrieve-Security-Network
Element input in Volume I, Section 11, "Craft Interface Terminal Usage."