beautypg.com

6 configuring the attributes of a local user, 6 configuring the attributes of a local user -19, Heme – H3C Technologies H3C S3100 Series Switches User Manual

Page 318: 6 “configuring the, Attributes of a local, User, Configuring the

background image

Operation Manual – AAA – RADIUS – HWTACACS

H3C S3100-52P Ethernet Switch

Chapter 1 AAA & RADIUS & HWTACACS

Configuration

1-19

Caution:

z

In string mode, if the VLAN ID assigned by the RADIUS server is a character string
containing only digits (for example, 1024), the switch first regards it as an integer
VLAN ID: the switch transforms the string to an integer value and judges if the value
is in the valid VLAN ID range; if it is, the switch adds the authenticated port to the
VLAN with the integer value as the VLAN ID (VLAN 1024, for example).

z

To implement dynamic VLAN assignment on a port where both MSTP and 802.1x
are enabled, you must set the MSTP port to an edge port.

1.3.6 Configuring the Attributes of a Local User

When local scheme is chosen as the AAA scheme, you should create local users on
the switch and configure the relevant attributes.
The local users are users set on the switch, with each user uniquely identified by a user
name. To make a user who is requesting network service pass local authentication, you
should add an entry in the local user database on the switch for the user.

Table 1-10

Configure the attributes of a local user

Operation

Command

Description

Enter system view

system-view

Set the password display

mode of all local users

local-user
password-display-mode

{ cipher-force | auto }

Optional
By default, the password

display mode of all access

users is auto, indicating

the passwords of access

users are displayed in the

modes set by the
password

command.

Add a local user and enter

local user view

local-user user-name

Required
By default, there is no

local user in the system.

Set a password for the

local user

password

{ simple |

cipher

} password

Optional

Set the status of the local

user

state

{ active | block }

Optional
By default, the user is in
active

state, that is, the

user is allowed to request

network services.