HP MSR2000/3000/4000 Router Series Security Command Reference
26
Parameters
max-user-number: Specifies the maximum number of concurrent logins, in the range of 1 to 1024.
Usage guidelines
This command takes effect only when local accounting is configured for the local user. It does not apply
to FTP users, who do not support accounting.
Examples
# Set the maximum number of concurrent logins to 5 using the local user name abc.
<Sysname> system-view
[Sysname] local-user abc
[Sysname-luser-manage-abc] access-limit 5
Related commands
display local-user
authorization-attribute (local user view/user group view)
Use authorization-attribute to configure authorization attributes for a local user or user group. After the
local user or a local user in the user group passes authentication, the device assigns these attributes to the
user.
Use undo authorization-attribute to restore the default.
Syntax
authorization-attribute { acl acl-number | callback-number callback-number | idle-cut minute |
user-role role-name | vlan vlan-id | work-directory directory-name } *
undo authorization-attribute { acl | callback-number | idle-cut | user-role role-name | vlan |
work-directory } *
Default
The network-operator user role is assigned to local users that are created by a network-admin user.
Views
Local user view, user group view
Predefined user roles
network-admin
Parameters
acl acl-number: Specifies the authorization ACL. The ACL number must be in the range of 2000 to 5999.
After passing authentication, a local user can access the network resources specified by this ACL.
callback-number callback-number: Specifies the authorized PPP callback number. The callback-number
argument is a case-sensitive string of 1 to 64 characters. After a local user passes authentication, the
device uses this number to call the user.
idle-cut minute: Sets the idle timeout period in minutes. The value range for the minute argument is 1 to
120. With the idle cut function enabled, an online user whose idle period exceeds the specified idle
timeout period is logged out.
user-role role-name: Specifies the authorized user role. The role-name argument is a case-sensitive string
of 1 to 63 characters. Up to 64 user roles can be specified for a user. For user role-related commands,










