AAA Commands 211

Table 1: Authentication Attributes for Local Users (continued)

Attribute

Description

Valid Value(s)

time-of-day

(network access mode only)

Day(s) and time(s) during which the user is permitted to log into the network.

After authorization, the user’s session can last until either the Time-Of-Day range or the Session- Timeout duration (if set) expires, whichever is shorter.

Note: Time-Of-Day is a Nortel vendor-specific attribute (VSA). The vendor ID is 562, and the vendor type is 234.

One of the following:

never—Access is always denied.

any—Access is always allowed.

al—Access is always allowed.

One or more ranges of values that consist of one of the following day designations (required), and a time range in hhmm-hhmm4-digit 24-hour format (optional):

mo—Monday

tu—Tuesday

we—Wednesday

th—Thursday

fr—Friday

sa—Saturday

su—Sunday

wk—Any day between Monday and Friday

 

Separate values or a series of ranges (except time

 

ranges) with commas (,) or a vertical bar (). Do

 

not use spaces.

 

The maximum number of characters is 253.

 

For example, to allow access only on Tuesdays

 

and Thursdays between 10 a.m. and 4 p.m.,

 

specify the following: time-of-day tu1000-

 

1600,th1000-1600

 

 

time-of-day

To allow access only on weekdays between 9 a.m

(network access mode

and 5 p.m., and on Saturdays from 10 p.m. until

only)

2 a.m., specify the following: time-of-

(cont.)

day wk0900-1700,sa2200-0200

(Also see the examples for set user attr on

 

 

page 207.)

 

Note: You can use time-of-dayin conjunction

 

with start-date,end-date, or both.

 

 

Nortel WLAN—Security Switch 2300 Series Command Line Reference

Page 211
Image 211
Nortel Networks 2300 Series Time-of-day, 1600,th1000-1600, Day wk0900-1700,sa2200-0200, With start-date,end-date, or both