Brocade Fabric OS Command Reference - Supporting Fabric OS v7.0.1 (53-1002447-01, March 2012)

1054 Fabric OS Command Reference
53-1001764-01
userConfig
22
--showad
Displays Admin Domain permissions in an AD-enabled environment. The
following operand is required:
-a AD_ID_list
For each AD in AD_ID_list, displays a list of users that include that AD in their AD
permissions. Specify a range (1-5) or a list of AD_IDs separated by a comma
(1,2,3), or a combination of both (1-5,7). Only users with SecurityAdmin or Admin
role may execute this command.
--showlf
Displays Logical Fabric permissions in an LF-enabled environment. Only users
with SecurityAdmin or Admin role may execute this command. An operand is
required with this command. The following operands are mutually exclusive:
-l LF_ID
For each LF in LF_ID_list, displays a list of users that include that LF in their LFF
permissions. Specify a range (1-5), or a list of LF_IDs separated by a comma
(1,2,3), or a combination of both (1-5,7). Only users with SecurityAdmin or Admin
role may execute this command.
-c
Displays a list of users who have permission to execute chassis commands.
--add | --change
Creates a new user account or modifies an existing user account. The following
restrictions apply when you create or modify a user account:
You cannot change the role, the AD or LF permissions, the home AD or the
home LF of any default account.
You cannot change the role, the AD or LF permissions, or the description of
accounts at the same or a higher authorization level.
You cannot change the role, the AD or LF permissions, or the home AD or
home Logical Fabric of your own account.
No account can disable itself.
AD or LF permissions must be a subset of the respective AD or LF
permissions of the account that creates or modifies a user account.
In an LF-enabled environment, you can change the role associated with
existing LFs but you cannot add new LFs or delete any existing LFs.
The account name cannot be the same an existing user account, a default
role, a user-defined role, or a system role. System roles are used by internal
switch processes and include the following: bin, daemon, sys, adm, tty, disk,
lp, mem, kmem, wheel, mail, news, uucp, man, dip, ftp, nobody, users, floppy,
console, utmp, and slocate. If the specified username already exists, this
command fails with an appropriate message. Choose a different username
and reissue the command.
The following operands are supported with the --add and --change option
username
Specifies the login name of the account to be created or modified. Enter a valid
login name to modify an existing account. For new accounts, the name must be
unique and must begin with an alphabetic character. User names are
case-sensitive and can contain up to 40 alphanumeric characters, including
periods (.) and underscore (_) characters.