Local user configuration task list, Configuring local user attributes – H3C Technologies H3C S7500E Series Switches User Manual
Page 32
2-3
Indicates how many users can use the same local user account for local authentication.
z
Expiration time
Indicates the expiration time of a local user account. A user must use a local user account that has not
expired to pass local authentication.
z
User group
Each local user belongs to a local user group and bears all attributes of the group, such as the
authorization attributes. For more information about local user group, see
.
z
Binding attributes
Binding attributes are for controlling the scope of users. Binding attributes are checked during
authentication. If the attributes of a user do not match the binding attributes configured for the user on
the access device, the user cannot pass authentication. Binding attributes include the ISDN calling
number, IP address, access port, MAC address, and native VLAN. For support information of binding
attributes, see
Configuring local user attributes
.
z
Authorization attributes
Authorization attributes indicate the rights that a user has after passing local authentication.
Authorization attributes include the ACL, PPP callback number, idle cut function, user level, user
profile, VLAN, and FTP/SFTP work directory. For support information of authorization attributes, see
Configuring local user attributes
.
You can configure an authorization attribute in user group view or local user view, making the attribute
effective for all local users in the group or only the local user. The setting of an authorization attribute
in local user view takes precedence over that in user group view.
Local user configuration task list
Task
Remarks
Configuring local user attributes
Required
Configuring user group attributes
Optional
Displaying and maintaining local users and local user groups
Optional
Configuring local user attributes
Follow these steps to configure attributes for a local user:
To do…
Use the command…
Remarks
Enter system view
system-view
—
Set the password display mode for all
local users
local-user
password-display-mode { auto
| cipher-force }
Optional
auto by default, indicating to
display the password of a local
user in the way indicated by the
password command.