Scheme—Uses the AAA module to provide local or remote console login authentication. You must provide a username and password for accessing the CLI. For more information about authentication modes and parameters, see Access Control Configuration Guide. Keep your username and password.

By default, console login does not require authentication. Any user can log in through the console port without authentication and have user privilege level 3. To improve device security, configure the password or scheme authentication mode immediately after you log in to the device for the first time.

Table 4 Configuration required for different console login authentication modes

Authentication

Configuration tasks

Reference

mode

 

 

 

Set the authentication mode to none for the console user

"Configuring none

None

authentication for console

interface.

 

login"

 

 

 

 

 

 

Enable password authentication on the console user

"Configuring password

Password

interface.

authentication for console

 

Set a password.

login"

 

 

 

 

Enable scheme authentication on the console user

 

 

interface.

 

 

Configure local or remote authentication settings.

 

To configure local authentication:

1.Configure a local user and specify the password.

 

2.

Configure the device to use local authentication.

"Configuring scheme

Scheme

To configure remote authentication:

authentication for console

 

login"

 

3.

Configure the RADIUS or HWTACACS scheme on

 

 

 

 

the device.

 

 

4.

Configure the username and password on the AAA

 

 

 

server.

 

 

5.

Configure the device to use the scheme for user

 

 

 

authentication.

 

 

 

 

 

Configuring none authentication for console login

Step

 

Command

Remarks

6.

Enter system view.

system-view

N/A

 

 

 

 

7.

Enter console user interface

user-interface console first-number

N/A

 

view.

[ last-number ]

 

 

 

 

 

 

8.

Enable none authentication

 

By default, you can log in to the

authentication-mode none

device through the console port

 

mode.

without authentication and have

 

 

 

 

 

user privilege level 3.

 

 

 

 

9.

Configure common settings

See "Configuring common console

Optional.

 

for console login.

user interface settings (optional)."

 

 

 

 

 

 

The next time you attempt to log in through the console port, you do not need to provide any username or password.

23