beautypg.com

Dell POWEREDGE M1000E User Manual

Page 1027

background image

Fabric OS Command Reference

995

53-1001764-02

userConfig

2

This command supports the following roles. These roles define access permissions for Fabric OS
commands. In a Logical Fabric environment, you can additionally define access to chassis-level
commands. An account can have one role in the Logical Fabric, and another role regarding chassis
commands.

User

Nonadministrative use, such as monitoring system activity.

Operator

A subset of administrative tasks for routine switch maintenance.

SwitchAdmin

Administrative use excluding security, user management, and zoning.

ZoneAdmin

Zone management.

FabricAdmin

Administrative use excluding user management and AD management.

BasicSwitchAdmin

Administrative use with a subset of admin-level commands, mostly for
monitoring with limited switch (local) access.

Admin

All administrative commands.

SecurityAdmin

All switch security and user management functions.

Notes

The userConfig command operates on the switch-local user database only, regardless of whether
the switch is configured to use RADIUS authentication or not.

The account database supports a maximum of 256 customer created accounts.

The backup account database is no longer supported on switches running Fabric OS v6.0 or later.
As a consequence, account recovery from backup as well as backup display option (former --show
-b option) are no longer supported in Fabric OS v6.0 or later.

The execution of this command is subject to Virtual Fabric or Admin Domain and Virtual Fabric
restrictions that may be in place. Refer to chapter 1, "Using Fabric OS commands" and Appendix A,
"Command Availability" for details.

Operands

This command has the following operands:

--

show

Displays user account information. Only accounts with SecurityAdmin and
Admin roles can show information about accounts other than the current
login account. The following operands are optional:

username

Specifies the account login name. When no operand is specified, the
command displays the current account information.

-a

Displays information about all accounts.

-r rolename

Displays information about all accounts with the specified role.

--

showad

Displays Admin Domain permissions in an AD-enabled environment. The
following operand is required:

-a AD_ID_list

For each AD in AD_ID_list, displays a list of users that include that AD in their
AD permissions. Specify a range (1-5) or a list of AD_IDs separated by a
comma (1,2,3), or a combination of both (1-5,7). Only users with
SecurityAdmin or Admin role may execute this command.

--

showlf

Displays Logical Fabric permissions in an LF-enabled environment. Only users
with SecurityAdmin or Admin role may execute this command. An operand is
required with this command. The following operands are mutually exclusive: