5-5
Cisco Systems IntelligentGigabit Ethernet Switch Modules for the IBM BladeCenter, Software Configuration Guide
24R9746
Chapter5 Configuring Switch-Ba sed Authentication
Protecting Access to Privileged EXEC Comman ds
If both the enable and enable secret passwords are defined, users must enter the enable secret password.
Use the level keyword to define a password for a specific privilege level. After you specify the level and
set a password, give the password only to users who need to have access at this level. Use the privilege
level global configuration command to specify commands accessible at various levels. For more
information, see the “Configuring Multiple Privilege Levels” section on page5-6.
If you enable password encryption, it applies to all passwords includi ng username passwords,
authentication key passwords, the privileged command password, and virtual terminal line passwords.
To remove a password and level, use the no enable password [level level] or no enable secret [level
level] global configuration command. To disable password encryption, use the no service
password-encryption global configuration command.
This example shows how to configure the encrypted password $1$FaD0$Xyti5Rkls3LoyxzS8 for
privilege level 2:
Switch(config)# enable secret level 2 5 $1$FaD0$Xyti5Rkls3LoyxzS8
Setting a Telnet Password for a Terminal Line
The switch has a default username and password, which are required when accessing the switch th rough
a Telnet session. For more information, see the Cisco Intelligent Gigabit Ethernet Switch Module for the
IBM BladeCenter Installation Guide.
Beginning in privileged EXEC mode, follow these steps to configure your switch for Telnet access:
To remove the password, use the no password global configuration command.
Command Purpose
Step1 enable password password Enter privileged EXEC mode.
Note An enable password is configured by default. It might not be
necessary to a password to enter privileged EXEC mode.
Step2 configure terminal Enter global configuration mode.
Step3 line vty 0 15 Configure the number of Telnet sessions (lines), and enter line
configuration mode.
The default configuration is login local.
There are 16 possible sessions on a command-capable switch. The 0
and 15 mean that you are configuring all 16 possible Telnet sessions.
Step4 password password Enter a Telnet password for the line or lines.
For password, specify a string from 1 to 25 alphanumeric char acters. The
string cannot start with a number, is case sensitive, and allows spaces but
ignores leading spaces. By default, no password is defined.
Step5 end Return to privileged EXEC mode.
Step6 show running-config Verify your entries.
The password is listed under the command line vty 0 15.
Step7 copy running-config startup-config (Optional) Save your entries in the configuration file.