Creating User Roles; Configuring User Role Rules - HP 10500 Series Configuration Manual

Hide thumbs Also See for 10500 Series:
Table of Contents

Advertisement

Creating user roles

In addition to the predefined user roles, you can create up to 64 custom user roles for granular access
control.
To create a user role:
Step
1.
Enter system view.
2.
Create a user role and
enter user role view.
3.
(Optional.) Configure a
description for the user
role.

Configuring user role rules

You can configure command, feature, and feature group rules to permit or deny the access of a user role
to specific commands. The configuration in the non-predefined user role view does not take effect for the
MDC.
You can configure up to 256 user-defined rules for a user role, but the total number of user-defined user
role rules in the system cannot exceed 1024.
If two user-defined rules of a user role conflict, the one with the higher ID takes effect.
For level-0 to level- 1 4 user roles, if a predefined user role rule and a user-defined user role rule conflict, the
user-defined user role rule takes effect.
Any rule modification, addition, or removal for a user role takes effect only on users who are logged in
with the user role after the change.
To configure rules for a user role:
Step
1.
Enter system view.
2.
Enter user role view.
Command
system-view
role name role-name
description text
Command
system-view
role name role-name
56
Remarks
N/A
By default, the system has 21 predefined
user roles: network-admin,
network-operator, mdc-admin,
mdc-operator, level-n (where n equals an
integer in the range 0 to 15), and
security-audit. Among these user roles,
only the permissions and description of
the user roles level-0 to level-14 are
configurable.
By default, a user role has no
description.
Remarks
N/A
N/A

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents