HP FlexNetwork 10500 Series Security Configuration Manual page 36

Hide thumbs Also See for FlexNetwork 10500 Series:
Table of Contents

Advertisement

By default, every new local user belongs to the default user group system and has all attributes of
the group. To assign a local user to a different user group, use the group command in local user
view.
To configure user group attributes:
Step
1.
Enter system view.
2.
Create a user group and
enter user group view.
3.
Configure authorization
attributes for the user
group.
4.
(Optional.) Configure
password control attributes
for the user group.
Displaying and maintaining local users and local user groups
Execute display commands in any view.
Task
Display the local user
configuration and online user
statistics.
Display the user group
configuration.
Command
system-view
user-group group-name
authorization-attribute { acl
acl-number | callback-number
callback-number | idle-cut minute |
ip-pool ipv4-pool-name | ipv6-pool
ipv6-pool-name | user-profile
profile-name | vlan vlan-id |
work-directory directory-name } *
Set the password aging time:
password-control aging
aging-time
Set the minimum password
length:
password-control length
length
Configure the password
composition policy:
password-control
composition type-number
type-number [ type-length
type-length ]
Configure the password
complexity checking policy:
password-control complexity
{ same-character |
user-name } check
Configure the maximum login
attempts and the action to take
for login failures:
password-control
login-attempt login-times
[ exceed { lock | lock-time time
| unlock } ]
Command
display local-user [ class { manage | network } | idle-cut { disable |
enable } | service-type { advpn | ftp | http | https | ike | lan-access | pad
| portal | ppp | ssh | telnet | terminal } | state { active | block } |
user-name user-name | vlan vlan-id ]
display user-group [ group-name ]
22
Remarks
N/A
By default, there is a
system-defined user group
named system, which is the
default user group.
By default, no authorization
attribute is configured for a user
group.
The callback-number, ip-pool,
ipv6-pool, and user-profile
authorization attributes are not
supported in the current
software version.
By default, the user group uses
the global password control
settings. For more information,
see
"Configuring password
control."

Advertisement

Table of Contents
loading

Table of Contents