beautypg.com

Local user configuration task list, Configuring local user attributes – H3C Technologies H3C S7500E Series Switches User Manual

Page 32

background image

2-3

Indicates how many users can use the same local user account for local authentication.

z

Expiration time

Indicates the expiration time of a local user account. A user must use a local user account that has not

expired to pass local authentication.

z

User group

Each local user belongs to a local user group and bears all attributes of the group, such as the

authorization attributes. For more information about local user group, see

Configuring user group

attributes

.

z

Binding attributes

Binding attributes are for controlling the scope of users. Binding attributes are checked during

authentication. If the attributes of a user do not match the binding attributes configured for the user on

the access device, the user cannot pass authentication. Binding attributes include the ISDN calling

number, IP address, access port, MAC address, and native VLAN. For support information of binding

attributes, see

Configuring local user attributes

.

z

Authorization attributes

Authorization attributes indicate the rights that a user has after passing local authentication.

Authorization attributes include the ACL, PPP callback number, idle cut function, user level, user

profile, VLAN, and FTP/SFTP work directory. For support information of authorization attributes, see

Configuring local user attributes

.

You can configure an authorization attribute in user group view or local user view, making the attribute

effective for all local users in the group or only the local user. The setting of an authorization attribute

in local user view takes precedence over that in user group view.

Local user configuration task list

Task

Remarks

Configuring local user attributes

Required

Configuring user group attributes

Optional

Displaying and maintaining local users and local user groups

Optional

Configuring local user attributes

Follow these steps to configure attributes for a local user:

To do…

Use the command…

Remarks

Enter system view

system-view

Set the password display mode for all

local users

local-user

password-display-mode { auto

| cipher-force }

Optional

auto by default, indicating to

display the password of a local

user in the way indicated by the

password command.