beautypg.com

Using local user databases, Configuring a local user database, Creating a local user database – Brocade FastIron Ethernet Switch Security Configuration Guide User Manual

Page 296: Adding a user record to a local user database

background image

Using local user databases

Web Authentication supports the use of local user databases consisting of usernames and passwords,
to authenticate devices. Users are blocked from accessing the switch until they enter a valid username
and password on a web login page.

Once a user successfully authenticates through username and password, the user is subjected to the
same policies as for RADIUS-authenticated devices (for example, the re-authentication period,
maximum number of users allowed, etc.). Similarly, once a user fails username and password
authentication, the user is subjected to the same policies as for devices that fail RADIUS
authentication.

You can create up to ten local user databases on the FastIron switch either by entering a series of CLI
commands, or by uploading a list of usernames and passwords from a TFTP file to the FastIron
switch. The user databases are stored locally, on the FastIron switch.

Configuring a local user database

Follow the steps given below to configure a local user database.

1. Create the local user database.
2. Add records to the local user database either by entering a series of CLI commands, or by importing

a list of user records from an ASCII text file on the TFTP server to the FastIron switch.

3. Set the local user database authentication mode.
4. If desired, set the authentication method (RADIUS/local) failover sequence.
5. Assign a local user databse to a Web Authentication VLAN.

Creating a local user database

The FastIron switch supports a maximum of ten local user databases, each containing up to 30 user
records. Each user record consists of a username and password.

To create a local user database, enter a command such as the following.

device(config)# local-userdb userdb1

device(config-localuserdb-userdb1)#

This command creates a local user database named userdb1. To add user records to this database,
refer to

Adding a user record to a local user database

on page 296.

Syntax: local-userdb db-name

You can create up to ten local user databases for Web Authentication.

For db-name, enter up to 31 alphanumeric characters.

Adding a user record to a local user database

To add a user record, enter commands such as the following.

device(config)# local-userdb userdb1

device(config-localuserdb-userdb1)# username marcia password bunch4

The first command changes the configuration level to the local user database level for userdb1 . If the
database does not already exist, it is created. The second command adds the user record marcia to
the userdb1 database.

Using local user databases

296

FastIron Ethernet Switch Security Configuration Guide

53-1003088-03