Juniper Networks J-Series manual Permission Bits for Login Classes

Models: J-Series

1 332
Download 332 pages 610 b
Page 28
Image 28

J-series™ Services Router Administration Guide

Table 7: Permission Bits for Login Classes

Permission Bit

Access

admin

Can view user account information in configuration mode and with the show configuration

 

command.

admin-control

Can view user accounts and configure them (at the [edit system login] hierarchy level).

access

Can view the access configuration in configuration mode and with the show configuration

 

operational mode command.

access-control

Can view and configure access information (at the [edit access] hierarchy level).

all

Has all permissions.

clear

Can clear (delete) information learned from the network that is stored in various network

 

databases (using the clear commands).

configure

Can enter configuration mode (using the configure command) and commit configurations

 

(using the commit command).

control

Can perform all control-level operations (all operations configured with the -control

 

permission bits).

field

Reserved for field (debugging) support.

firewall

Can view the firewall filter configuration in configuration mode.

firewall-control

Can view and configure firewall filter information (at the [edit firewall] hierarchy level).

floppy

Can read from and write to the removable media.

interface

Can view the interface configuration in configuration mode and with the show

 

configuration operational mode command.

interface-control

Can view chassis, class of service, groups, forwarding options, and interfaces

 

configuration information. Can configure chassis, class of service, groups, forwarding

 

options, and interfaces (at the [edit] hierarchy).

maintenance

Can perform system maintenance, including starting a local shell on the router and

 

becoming the superuser in the shell (by issuing the su root command), and can halt and

 

reboot the router (using the request system commands).

network

Can access the network by entering the ping, ssh, telnet, and traceroute commands.

reset

Can restart software processes using the restart command and can configure whether

 

software processes are enabled or disabled (at the [edit system processes] hierarchy

 

level).

rollback

Can use the rollback command to return to a previously committed configuration other

 

than the most recently committed one.

routing

Can view general routing, routing protocol, and routing policy configuration information

 

in configuration and operational modes.

6User Authentication Overview

Page 28
Image 28
Juniper Networks J-Series manual Permission Bits for Login Classes