20
To do…
Use the command…
Remarks
3.
Configure
password
control
attributes for
the user
group.
Set the password
aging time.
password-control aging
aging-time
Optional.
By default, the global
setting (90 days by
default) is used.
Set the minimum
password length.
password-control length
length
Optional.
By default, the global
setting (10 characters
by default) is used.
Configure the
password
composition
policy.
password-control composition type-
number
type-number
[
type-length
type-length
]
Optional.
By default, the global
settings (both are one
by default) are used.
4.
Configure the authorization
attributes for the user group.
authorization-attribute
{
acl
acl-
number
|
callback-number
callback-number
|
idle-cut
minute
|
level
level
|
user-profile
profile-name
|
vlan
vlan-id
|
work-directory
directory-name
} *
Optional.
By default, no
authorization attribute is
configured for a user
group.
5.
Set the guest attribute for the user
group.
group-attribute
allow-guest
Optional.
By default, the guest
attribute is not set for a
user group, and guest
users created by a guest
manager through the
web interface cannot
join the group.
For more information about password control attributes configuration commands, see
Security Command
Reference
.
Displaying and maintaining local users and local user groups
To do…
Use the command…
Remarks
Display local user information
display local-user
[
idle-cut
{
disable
|
enable
} |
service-type
{
ftp
|
lan-
access
|
ssh
|
telnet
|
terminal
|
web
} |
state
{
active
|
block
} |
user-
name
user-name
|
vlan
vlan-id
] [
slot
slot-number
] [
|
{
begin
|
exclude
|
include
}
regular-expression
]
Available in any view
Display the user group configuration
information
display user-group
[
group-name
] [
|
{
begin
|
exclude
|
include
}
regular-
expression
]
Available in any view
Configuring RADIUS schemes
A RADIUS scheme specifies the RADIUS servers that the switch can cooperate with and defines a set of
parameters that the switch uses to exchange information with the RADIUS servers. There may be