Omitir para ir al contenido principal
  • Hacer pedidos rápida y fácilmente
  • Ver pedidos y realizar seguimiento al estado del envío
  • Cree y acceda a una lista de sus productos
  • Administre sus sitios, productos y contactos de nivel de producto de Dell EMC con Administración de la empresa.

Dell PowerEdge FN I/O Module Configuration Guide 9.10(0.0)

PDF

Configuring Custom Privilege Levels

In addition to assigning privilege levels to the user, you can configure the privilege levels of commands so that they are visible in different privilege levels.

Within the Dell Networking OS, commands have certain privilege levels. With the privilege command, you can change the default level or you can reset their privilege level back to the default. Assign the launch keyword (for example, configure) for the keyword’s command mode.

To assign commands and passwords to a custom privilege level, use the following commands. You must be in privilege level 15.

  1. Assign a user name and password. CONFIGURATION mode username name [access-class access-list-name] [privilege level] [nopassword | password [ encryption-type] password] [secret] Configure the optional and required parameters:
    • name : enter a text string (up to 63 characters).
    • access-class access-list-name : enter the name of a configured IP ACL.
    • privilege level : the range is from 0 to 15.
    • nopassword: do not require the user to enter a password.
    • encryption-type : enter 0 for plain text or 7 for encrypted text.
    • password : enter a text string.
    • secret: specify the secret for the user.
  2. Configure a password for privilege level. CONFIGURATION mode enable password [level level] [ encryption-mode] password Configure the optional and required parameters:
    • level level : specify a level from 0 to 15. Level 15 includes all levels.
    • encryption-type : enter 0 for plain text or 7 for encrypted text.
    • password : enter a text string up to 32 characters long.
    To change only the password for the enable command, configure only the password parameter.
  3. Configure level and commands for a mode or reset a command’s level. CONFIGURATION mode privilege mode {level level command | reset command} Configure the following required and optional parameters:
    • mode : enter a keyword for the modes ( exec, configure, interface, line, route-map, or router)
    • level level : the range is from 0 to 15. Levels 0, 1, and 15 are pre-configured. Levels 2 to 14 are available for custom configuration.
    • command : an Dell CLI keyword (up to five keywords allowed).
    • reset: return the command to its default privilege mode.
To view the configuration, use the show running-config command in EXEC Privilege mode.

The following example shows a configuration to allow a user john to view only EXEC mode commands and all snmp-server commands. Because the snmp-server commands are enable level commands and, by default, found in CONFIGURATION mode, also assign the launch command for CONFIGURATION mode, configure, to the same privilege level as the snmp-server commands.

Line 1: The user john is assigned privilege level 8 and assigned a password.

Line 2: All other users are assigned a password to access privilege level 8.

Line 3: The configure command is assigned to privilege level 8 because it needs to reach CONFIGURATION mode where the snmp-server commands are located.

Line 4: The snmp-server commands, in CONFIGURATION mode, are assigned to privilege level 8.

Example of Configuring a Custom Privilege Level

Dell(conf)#
                                 username john privilege 8 password john
                                 Dell(conf)#
                                 enable password level 8 notjohn
                                 Dell(conf)#
                                 privilege exec level 8 configure
                                 Dell(conf)#
                                 privilege config level 8 snmp-server
                                 Dell(conf)#end
                                 Dell#show running-config
                                 Current Configuration ...
                                 !
                                 hostname FTOS
                                 !
                                 enable password level 8 notjohn
                                 enable password FTOS
                                 !
                                 username admin password 0 admin
                                 username john password 0 john privilege 8
                                 !
                              

The following example shows the Telnet session for user john. The show privilege command output confirms that john is in privilege level 8. In EXEC Privilege mode, john can access only the commands listed. In CONFIGURATION mode, john can access only the snmp-server commands.

Example of Privilege Level Login and Available Commands

apollo% telnet 172.31.1.53
                                 Trying 172.31.1.53...
                                 Connected to 172.31.1.53.
                                 Escape character is '^]'.
                                 Login: john
                                 Password:
                                 Dell#show priv
                                 Current privilege level is 8
                                 Dell#?
                                 configure      Configuring from terminal
                                 disable        Turn off privileged commands
                                 enable         Turn on privileged commands
                                 exit           Exit from the EXEC
                                 no             Negate a command
                                 show           Show running system information
                                 terminal       Set terminal line parameters
                                 traceroute     Trace route to destination
                                 Dell#confi
                                 Dell(conf)#?
                                 end            Exit from Configuration mode
                                 
                              

Califique este contenido

Preciso
Útil
Fácil de comprender
¿Este artículo fue útil?
0/3000 characters
  Proporcione calificaciones (1 a 5 estrellas).
  Proporcione calificaciones (1 a 5 estrellas).
  Proporcione calificaciones (1 a 5 estrellas).
  Seleccione si el artículo fue útil o no.
  Los comentarios no pueden contener estos caracteres especiales: <>"(", ")", "\"