beautypg.com

Configuration procedure – H3C Technologies H3C S3100 Series Switches User Manual

Page 48

background image

3-3

Authentication

mode

Telnet configuration

Description

Manage VTY users

Set service type for VTY
users

Required

Perform common
configuration

Perform common Telnet
configuration

Optional

Refer to

Table 3-2

.

To improve security and prevent attacks to the unused Sockets, TCP 23 and TCP 22, ports for Telnet

and SSH services respectively, will be enabled or disabled after corresponding configurations.

z

If the authentication mode is none, TCP 23 will be enabled, and TCP 22 will be disabled.

z

If the authentication mode is password, and the corresponding password has been set, TCP 23

will be enabled, and TCP 22 will be disabled.

z

If the authentication mode is scheme, there are three scenarios: when the supported protocol is

specified as telnet, TCP 23 will be enabled; when the supported protocol is specified as ssh, TCP

22 will be enabled; when the supported protocol is specified as all, both the TCP 23 and TCP 22

port will be enabled.

Telnet Configuration with Authentication Mode Being None

Configuration Procedure

Table 3-4 Telnet configuration with the authentication mode being none

Operation

Command

Description

Enter system view

system-view

Enter one or more VTY user
interface views

user-interface vty first-number
[ last-number ]

Configure not to authenticate
users logging into VTY user
interfaces

authentication-mode none

Required

By default, VTY users are authenticated
after logging in.

Configure the command level
available to users logging into
VTY user interface

user privilege level level

Optional

By default, commands of level 0 are
available to users logging into VTY user
interfaces.

Configure the protocols to be
supported by the VTY user
interface

protocol inbound { all | ssh |
telnet }

Optional

By default, both Telnet protocol and SSH
protocol are supported.

Set the commands to be
executed automatically after a
user login to the user interface
successfully

auto-execute command text

Optional

By default, no command is executed
automatically after a user logs into the
VTY user interface.