To do…

Use the command…

Remarks

Configure the password for user privilege level switch

super password [ level user-level]

{simple cipher } password

Required if the authentication mode is set to local.

By default, no privilege level switch password is configured.

CAUTION:

If no user privilege level is specified when you configure the password for switching the user privilege level with the super password command, the user privilege level defaults to 3.

Specifying the simple keyword saves the password in plain text, which is less secure than specifying the cipher keyword, which saves the password in cipher text.

If the user logs in from the AUX user interface (the console port), the user can switch the privilege level to a higher level even if the authentication mode is local and no password for user privilege level switch is configured.

Switching the user privilege level

Follow the step to switch the user privilege level:

To do…

Use the command…

Remarks

 

 

Required

 

 

When logging in to the switch, a

Switch the user privilege level

super [ level ]

user has a user privilege level,

which depends on user interface or

 

 

 

 

authentication user level.

 

 

Available in user view.

 

 

 

When you switch the user privilege level, the information you need to provide varies with combinations of the user interface authentication mode and the super authentication mode.

Table 6 Information input for user privilege level switch

User interface

User privilege level

Information input for the

Information input after the

switch

authentication

authentication

first authentication mode

authentication mode changes

mode

mode

 

 

 

 

 

 

 

Local user privilege level

 

 

local

switch password (configured

 

 

on the switch)

 

 

 

 

 

 

 

Local user privilege level

Username and password for

 

local scheme

privilege level switch (configured

 

switch password

none/password

 

on the AAA server)

 

 

 

 

 

 

 

scheme

Username and password for

 

privilege level switch

 

 

 

 

 

 

 

 

scheme local

Username and password for

Local user privilege level switch

 

privilege level switch

password

 

 

 

 

 

 

18