29.04.2019 Views

OS6860(E)_AOS_8.1.1.R01_Switch_Management_Guide

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Overview of User Accounts<br />

Managing <strong>Switch</strong> User Accounts<br />

Overview of User Accounts<br />

A user account includes a login name, password, and user privileges. These privileges determine whether<br />

the user has read or write access to the switch and which command domains and command families the<br />

user is authorized to execute on the switch.<br />

The designation of particular command families/domains or command families for user access is sometimes<br />

referred to as partitioned management. The privileges and profiles are sometimes referred to as<br />

authorization.<br />

Note. For information about setting up user information on an authentication (AAA) server, see the<br />

“Managing Authentication Servers” chapter of the Omni<strong>Switch</strong> <strong>AOS</strong> Release 8 Network Configuration<br />

<strong>Guide</strong>.<br />

Users typically log into the switch through one of the following methods:<br />

• Console port—A direct connection to the switch through the console port.<br />

• Telnet—Any standard Telnet client may be used for logging into the switch.<br />

• FTP—Any standard FTP client may be used for logging into the switch.<br />

• HTTP—The switch has a Web browser management interface for users logging in via HTTP. This<br />

management tool is called WebView.<br />

• Secure Shell—Any standard Secure Shell client may be used for logging into the switch.<br />

• SNMP—Any standard SNMP browser may be used for logging into the switch.<br />

Startup Defaults<br />

By default, a single user management account is available at the first bootup of the switch. This account<br />

has the following user name and password:<br />

• user name—admin<br />

• password—switch<br />

Initially, the admin user can only be authorized on the switch through the console port. <strong>Management</strong><br />

access through any other interface is disabled. The Authenticated <strong>Switch</strong> Access commands may be used<br />

to enable access through other interfaces/services (Telnet, HTTP, etc.); however, SNMP access is not<br />

allowed for the admin user. Also, the admin user cannot be modified, except for the password.<br />

Password expiration for the admin user is disabled by default. See “Configuring Password Expiration” on<br />

page 6-11.<br />

In addition, another account, default, is available on the switch for default settings only; this account<br />

cannot be used to log into the switch. It is used to store and modify default settings for new users.<br />

To set up a user account, use the user command, which specifies the following:<br />

• Password—The password is required for new users or when modifying a user’s SNMP access. The<br />

password will not appear in an ASCII configuration file created via the snapshot command.<br />

page 6-4 Omni<strong>Switch</strong> <strong>AOS</strong> Release 8 <strong>Switch</strong> <strong>Management</strong> <strong>Guide</strong> May 2014

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!