Asante Technologies IC36240 user manual Passwords and Privileges Commands, Enable Password

Page 20

3.3 Passwords and Privileges Commands

The switch has not default password, which allows anyone on the network access to various privilege levels. To prevent unauthorized changes to the switch’s configuration, you should set an enable password for access to switch management. Follow the example below to assign a privileged password.

Switch> enable

Password: <no password by default; press Enter>

Switch# configure

Switch(config)# enable password ?

0Specifies an UNENCRYPTED password will follow

7Specifies a HIDDEN password will follow

LINE The UNENCRYPTED (cleartext) 'enable' password

Switch(config)# enable password 0 <password>

Switch(config)# exit

Switch# write [memory ‌ file]

A separate password should be set for the primary terminal line (console) and the virtual terminal lines (telnet). The default password Asante is assigned only to the virtual terminal line Vty0. Up to three other virtual terminal lines may be created, and they each will require a separate password.

3.3.1 Privileges Commands

The following sections describe the password privileges commands used to control access to different levels of the switch:

Enable Password

Password

Service Password-Encryption

3.3.2 Enable Password

To set a local password to control access to various privilege levels, use the enable password command in global configuration mode. Use the no form of this command to remove the password requirement.

Switch(config)# enable password ?

0Specifies an UNENCRYPTED password will follow

7Specifies a HIDDEN password will follow

LINE The UNENCRYPTED (cleartext) 'enable' password

Switch(config)# enable password 0 <password>

Switch(config)# exit

Switch# write [memory ‌ file]

20

Asante IntraCore IC36240

User’s Manual

Image 20
Contents IntraCore IC36240 Series Layer 2+ Gigabit Ethernet Switch User’s Manual IntraCore IC36240Table of Contents Password Service Password-Encryption Snmp Configuration Commands Trunk Ieee 802.1q Technical Support and Warranty Features IntroductionPackage Contents Front and Back Panel DescriptionsLEDs LEDManagement and Configuration Console InterfaceSafety Overview Hardware Installation and SetupInstallation Overview Installing into an Equipment Rack Recommended Installation ToolsPower Requirements Environmental RequirementsEquipment Rack Guidelines Installing the Optional External Power SupplySFP Mini Gbic Ports 1 10/100/1000BaseT Ports Cabling Procedures Connecting PowerConnecting to the Network Gigabit Ethernet Ports Cabling Procedures Pin Number Pair Number & Wire Colors Asante IntraCore IC36240 Initial Software Setup Connecting to a ConsoleConnecting to a PC User Access Verification PasswordEnable Password Passwords and Privileges CommandsPrivileges Commands Password Service Password-EncryptionLogin Security Configuring an IP AddressUsername Command Password and login CommandsRestoring Factory Defaults System Boot ParametersSetting a Default IP Gateway Address Switchconfig# ip default-gatewayUnderstanding the Command Line Interface CLI User Top User Exec ModeAccess Each Command Mode Document ConventionsPrivileged Top Privileged Exec Mode Command Show ? PurposeGlobal Configuration Mode Command Exit End Ctrl-Z Purpose Switch# configureInterface Configuration Mode Spanning-Tree Configuration ModeSpanning-tree mst configuration Advanced Features Supported within the Command ModeVlan Configuration Mode Command Help Purpose Example of Context Sensitive HelpChecking Command Syntax Switch# configure ?Using CLI Command History Using the No and Default Forms of CommandsUsing Command-Line Editing Features and Shortcuts Keystrokes/Command PurposeKeystrokes Purpose Moving Around on the Command LineCompleting a Partial Command Name Editing Command Lines That Wrap Scrolling Down a Line or a Screen Redisplaying the Current Command LineDeleting Entries Keystrokes Transposing Mistyped CharactersControlling Capitalization Managing the System and Configuration Files Setting the System ClockSwitch# clock ? Switch# clock set 092930 28 January Switch# reload crChanging the Password Testing Connections with Ping TestsSpecifying the Hostname Enabling the System LogManaging Configuration Files Displaying the Operating ConfigurationConfiguring from the Terminal Switch# show running-configCopying Configuration Files to a Network Server Newname# copy running-config startup-configSwitch# copy startup-config ? Switch# copy running-config tftp//192.168.0.1/my-config Switch# copy running-configSwitch# copy running-config Tftp Configuring Snmp AuthenticationAccess Control Switch# copy tftp//192.168.123.59/my-confg running-configSupport Create or Modify Access Control for Snmp CommunitySecurity Levels Command Purpose Snmp-server community string view Establish the Contact and Location of the Snmp AgentConfiguring Spanning Tree Snmp Configuration CommandsSpanning Tree Parameters Spanning-tree mst?Spanning Tree Port Configuration Rapid Spanning Tree Protocol RstpPort Priority Port Path CostConfiguring Switch/Bridge Priority Switchconfig# spanning-tree priority priorityRapid Convergence Enabling Rapid Spanning TreeConfiguring Link Type Configuring an Edge PortConfiguring Port Path Cost Configuring Port PriorityMultiple Spanning-Tree MST Configuring Vlan VlanShow mac-address-table Switchconfig# mac-address-table aging-timeMAC Address Table Class Address or Range Status Configuring IPAssign IP Addresses to Switch Establish Address Resolution Define a Static ARP CacheConfiguring Igmp Managing IP Multicast TrafficIgmp Overview Forwarding Unknown Multicast PacketsUsing Access Lists Switchconfig-if-veth1#ip igmp query-intervalCommand Purpose Ip igmp query-max-response-time Host-query messagesUsing a Classification ACL Asante IntraCore IC36240 Create a Standard Access List Switchconfig# mac access-list standard Create a MAC Access ListCreate an Expanded Access List Access-list 101 ? Access-list 101 deny ?Access-list 101 deny tcp ? Access-list 101 deny tcp 192.168.123.0 0.0.0.255 ?Creating an Access List with a Name Applying an Access List to an InterfaceAccess-list ? Access-list standard ?Configuring Common Access Lists Switchconfig# access-list 110 permit udp any any eqAccess-list 101 deny ip any any Vlan Configuration Creating or Modifying a VlanDeleting a Vlan Switch# show vlanSwitchconfig-vlan#port-member delete eth Trunk Ieee 802.1q Static AccessVlan Port Membership Modes Command Purpose Switchconfig# vlan dot1q tag native Switchconfig# endQuality of Service Configuration Configuring Weighted Fair QueuingMonitoring Weighted Fair Queuing Lists Priority QueuingConfiguring Traffic Shaping for an Interface Traffic ShapingDefining the Priority List Monitoring Priority Queuing ListsConfiguring Rate Limit Configuring Traffic Shaping for an Access ListMonitoring the Traffic Shaping Configuration Generic Traffic Shaping ExampleAsante IntraCore IC36240 Configuring the Switch Using the GUI Main Configuration MenuInformation Screens Front Panel Information ScreenAssign IP Addresses to Switch General Information ScreenClass Address or Range Status Port Configuration Menu Individual Port Configuration ScreenAsante IntraCore IC36240 Press go Spanning Tree Protocol Configuration STP Port Configuration Global STP Bridge Configuration Snmp Configuration Asante IntraCore IC36240 Address Table Screen Asante IntraCore IC36240 Asante IntraCore IC36240 Vlan Configuration Asante IntraCore IC36240 Click Apply Igmp Configuration Asante IntraCore IC36240 Asante IntraCore IC36240 Web CLI Screen System Clock Menu Save Appendix a Basic Troubleshooting Problem Possible SolutionsAppendix B Specifications Physical CharacteristicsEnvironmental Range PerformanceTechnical Support and Warranty Standards ComplianceAppendix C FCC Compliance and Warranty Statements FCC Compliance Statement Important Safety InstructionsIntraCare Warranty Statement Appendix D Online Warranty Registration Access List IndexIgmp LED Safety Priority Queuing Vlan