Cisco ASA 5505 Configuration Manual page 666

Asa 5500 series
Hide thumbs Also See for ASA 5505:
Table of Contents

Advertisement

Adding a User Account
If you want to configure VPN policy attributes for this user, see the
Step 8
for a User" section on page
Click Apply.
Step 9
The user is added to the local adaptive security appliance database, and changes are saved to the running
configuration.
Note
To configure the enable password from the User Accounts pane (see the
Domain Name, and Passwords" section on page
enable_15 user is always present in this pane, and represents the default username. This method of
configuring the enable password is the only method available in ASDM for the system configuration. If
you configured other enable level passwords at the CLI (enable password 10, for example), then those
users are listed as enable_10, and so on.
Configuring VPN Policy Attributes for a User
By default, each user inherits the settings set in the VPN policy. To override the settings, you can
customize VPN attributes by performing the following steps:
Step 1
If you have not already added a user according to the
from the Configuration > Device Management > Users/AAA > User Accounts pane, click Add.
The Add User Account-Identity dialog box appears.
Step 2
In the left-hand pane, click VPN Policy.
Cisco ASA 5500 Series Configuration Guide using ASDM
31-20
Full Access (ASDM, Telnet, SSH and console)—If you configure authentication for management
access using the local database (see the
command Access" section on page
and the console port. If you also enable authentication, then the user can access global configuration
mode.
Privilege Level—Selects the privilege level for this user to use with local command
authorization. The range is 0 (lowest) to 15 (highest) See the
Authorization" section on page 32-13
CLI login prompt for SSH, Telnet and console (no ASDM access)—If you configure
authentication for management access using the local database (see the
for CLI, ASDM, and enable command Access" section on page
use SSH, Telnet, and the console port. The user cannot use ASDM for configuration (if you
configure HTTP authentication). ASDM monitoring is allowed. If you also configure enable
authentication, then the user cannot access global configuration mode.
No ASDM, SSH, Telnet, or console access—If you configure authentication for management
access using the local database (see the
command Access" section on page
management access method for which you configured authentication (excluding the Serial option;
serial access is allowed).
31-20.
Chapter 31
Configuring AAA Servers and the Local Database
"Configuring Authentication for CLI, ASDM, and enable
32-11), then this option lets the user use ASDM, SSH, Telnet,
for more information.
"Configuring Authentication for CLI, ASDM, and enable
32-11), then this option disallows the user from accessing any
9-1), change the password for the enable_15 user. The
"Adding a User Account" section on page
"Configuring Command
"Configuring Authentication
32-11), then this option lets the user
"Configuring VPN Policy Attributes
"Configuring the Hostname,
OL-20339-01
31-18,

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Asa 5510Asa 5540Asa 5520Asa 5550Asa 5580

Table of Contents