H3C Technologies H3C SecBlade LB Cards User Manual
Page 88

78
Configuring the user privilege level directly on a user interface
To configure the user privilege level directly on a user interface that uses the scheme authentication mode:
Step Command
Remarks
1.
Configure the authentication
type for SSH users as
publickey.
For more information, see Security
Configuration Guide.
Required only for SSH users who
use public-key authentication.
2.
Enter system view.
system-view
N/A
3.
Enter user interface view.
user-interface { first-num1
[ last-num1 ] | vty first-num2
[ last-num2 ] }
N/A
4.
Enable the scheme
authentication mode.
authentication-mode scheme
By default, the authentication
mode is scheme for VTY users and
none for console and AUX users.
5.
Configure the user privilege
level.
user privilege level level
By default, the user privilege level
for console and AUX users is 3,
and that for VTY users is 0.
To configure the user privilege level directly on a user interface that uses the none or password
authentication mode:
Step Command
Remarks
1.
Enter system view.
system-view
N/A
2.
Enter user interface view.
user-interface { first-num1
[ last-num1 ] | { aux | console |
vty } first-num2 [ last-num2 ] }
Only LB cards support AUX user
interfaces.
3.
Configure the authentication
mode for any user who uses
the current user interface to
log in to the device.
authentication-mode { none |
password }
Optional.
By default, the authentication
mode is scheme for VTY users and
none for console and AUX users.
4.
Configure the privilege level
of users logged in through the
current user interface.
user privilege level level
Optional.
By default, the user privilege level
for console and AUX users is 3,
and that for VTY users is 0.
For example:
# Display the commands a Telnet user can use by default after login.
User view commands:
ping Ping function
quit Exit from current command view
rsh Establish one RSH connection
ssh2 Establish a secure shell client connection
super Set the current user priority level
telnet Establish one TELNET connection
tracert Trace route function