H3C S7500 Series Ethernet Switches Operation Manual

Operation Manual – Login
H3C S7500 Series Ethernet Switches Chapter 3
Logging in through Telnet
3-10
To do… Use the command… Remarks
Enter system view
system-view
Enter the
default ISP
domain
view
domain domain-name
Configure
the AAA
scheme to
be applied
to the
domain
scheme { local |
radius-scheme
radius-scheme-name
[ local ] | none }
Configure
the
authentic
ation
scheme
Return to
system
view
quit
Optional
By default, the local AAA
scheme is applied. If you
specify to apply the local AAA
scheme, you need to perform
the configuration concerning
local user as well.
If you specify to apply an
existing scheme by providing
the radius-scheme-name
argument, you need to perform
the following configuration as
well:
z Perform AAA&RADIUS
configuration on the switch.
(Refer to the
AAA&RADIUS&HWTACAC
S&EAD module for more.)
z Configure the user name
and password accordingly
on the AAA server. (Refer
to the user manual of AAA
server.)
Create a local user and
enter local user view
local-user user-name
No local user exists by default.
Set the authentication
password for the local
user
password { simple |
cipher } password
Required
Specify the service type
for VTY users
service-type telnet
[ level level ]
Required
Return to system view
quit
Enter one or more VTY
user interface views
user-interface vty
first-number
[ last-number ]
Configure to
authenticate users
locally or remotely
authentication-mode
scheme [ command-
authorization ]
Required
The specified AAA scheme
determines whether to
authenticate users locally or
remotely.
Users are authenticated locally
by default.
Configure the command
level available to users
logging into the user
interface
user privilege level
level
Optional
By default, commands of level
0 are available to users logging
into the VTY user interfaces.