beautypg.com

Configuring scheme, Authentication for console, Login – H3C Technologies H3C SecPath F1000-E User Manual

Page 25

background image

17

Step Command

Remarks

2.

Enter console user interface
view.

user-interface console first-number
[ last-number ]

N/A

3.

Configure the authentication

mode as local password
authentication.

authentication-mode password

By default, you can log in to the
device through the console port
without authentication and have

user privilege level 3 after login.

4.

Set the local password.

set authentication password
{ cipher | simple } password

By default, no local password is
set.

5.

Configure common settings

for console login.

See "

Configuring common console

user interface settings (optional)

."

Optional.

The next time you attempt to log in through the console port, you must provide the configured login

password.

Configuring scheme authentication for console login

Step Command

Remarks

1.

Enter system view.

system-view

N/A

2.

Enter console user interface

view.

user-interface console first-number
[ last-number ]

N/A

3.

Specify the scheme
authentication mode.

authentication-mode scheme

Whether local, RADIUS, or
HWTACACS authentication is

adopted depends on the configured

AAA scheme.
By default, users that log in through
the console port are not

authenticated.

4.

Enable command
authorization.

command authorization

Optional.
By default, command authorization
is not enabled.
By default, the command level

depends on the user privilege level.
A user is authorized a command

level not higher than the user

privilege level. With command
authorization enabled, the

command level for a login user is

determined by both the user
privilege level and AAA

authorization. If a user executes a

command of the corresponding

command level, the authorization
server checks whether the command

is authorized. If yes, the command

can be executed.