194AAA Commands

Syntax set authentication console user-wildcardmethod1 [method2] [method3] [method4]

user-wildcard

method1

method2

method3

method4

Single user or set of users with administrative access through the switch’s console.

Specify a username, use the double-asterisk wildcard character (**) to specify all usernames, or use the single-asterisk wildcard character (*) to specify a set of usernames up to or following the first delimiter character—either an at sign (@) or a period (.). (For details, see “User Wildcards” on page 12.)

At least one of up to four methods that WSS Software uses to handle authentication. Specify one or more of the following methods in priority order. WSS Software applies multiple methods in the order you enter them.

A method can be one of the following:

local—Uses the local database of usernames and user groups on the WSS for authentication.

server-group-name—Uses the defined group of RADIUS servers for authentication. You can enter up to four names of existing RADIUS server groups as methods.

noneFor users with administrative access only, WSS Software performs no authentication, but prompts for a username and password and accepts any combination of entries, including blanks.

Note: The authentication method none you can specify for administrative access is different from the fallthru authentication type none, which applies only to network access. The authentication method none allows access to the WSS by an administrator. The fallthru authentication type none denies access to a network user. (See “set service-profile auth- fallthru” on page 308.)

For more information, see “Usage.”

Defaults By default, authentication is deactivated for all console users, and the default authentication method in a console authentication rule is none. WSS Software requires no username or password, by default. These users can press Enter at the prompts for administrative access.

Note. Nortel recommends that you change the default setting unless the WSS is in a secure physical location.

NN47250-100 (Version 02.51)

Page 194
Image 194
Nortel Networks 2300 Series manual User-wildcard Method1 Method2 Method3 Method4