240 Configuring Authentication, Authorization, and A ccounting
Access Lines (Non-AAA)
Table10-9 shows the default configuration of the access lines that do not use
method lists.
Administrative Profiles
The administrative profiles shown in Table10-10 are system-defined and may
not be deleted or altered. To see the rules in a profile, use the show admin-
profiles name

profile name

command.
Accounting (exec) none none none
Accounting
(commands)
none none none
Table 10-9. Default Configuration for Non-AAA Access Lines
Access Line Authentication Authorization
HTTP local n/a
HTTPS local n/a
802.1X none none
Table 10-10. Default Administrative Profiles
Name Description
network-admin Allows access to all commands.
network-security Allows access to network security features such as 802.1X,
Voice VLAN, Dynamic ARP Inspection and IP Source
Guard.
router-admin Allows access to Layer 3 features such as IPv4 Routing, IPv6
Routing, OSPF, RIP, etc.
multicast-admin Allows access to multicast features at all layers, this includes
L2, IPv4 and IPv6 multicast, IGMP, IGMP Snooping, etc.
dhcp-admin Allows access to DHCP related features such as DHCP
Server and DHCP Snooping.
Table 10-8. Default AAA Methods (Continued)
AAA Service (type) Console Telnet SSH