R3721-F3210-F3171-HP High-End Firewalls Getting Started Command Reference-6PW101
6
When both command accounting and command authorization are enabled, only the authorized and
executed commands are recorded on the HWTACACS server.
Examples
# Enable command accounting on VTY 0. Then the HWTACACS server records the commands executed
by users that have logged in through VTY 0.
<Sysname> system-view
[Sysname] user-interface vty 0
[Sysname-ui-vty0] command accounting
command authorization
Syntax
command authorization
undo command authorization
View
User interface view
Default level
3: Manage level
Parameters
None
Description
Use command authorization to enable command authorization.
Use undo command authorization to restore the default.
By default, command authorization is disabled. Logged-in users can execute commands without
authorization.
With command authorization enabled, users can perform only commands authorized by the server.
Examples
# Enable command accounting for VTY 0 so that users logging in from VTY 0 can perform only the
commands authorized by the HWTACACS server.
<Sysname> system-view
[Sysname] user-interface vty 0
[Sysname-ui-vty0] command authorization
databits
Syntax
databits { 5 | 6 | 7 | 8 }
undo databits
View
User interface view