Displaying Role-Based Information - Cisco MDS 9000 Series Configuration Manual

Security
Hide thumbs Also See for MDS 9000 Series:
Table of Contents

Advertisement

Common Roles
• Verify that the role database is identical on all switches in the entire fabric.
• Be sure to edit the role database on any switch to the desired database and then commit it. This

Displaying Role-Based Information

Use the show role command to display rules configured on the switch. The rules are displayed by rule number
and are based on each role. All roles are displayed if the role name is not specified. See the following example.
Displays Information for All Roles
switch# show role
Role: network-admin
Description: Predefined Network Admin group. This role cannot be modified.
Vsan policy: permit (default)
-------------------------------------------------
Rule
-------------------------------------------------
1
2
3
4
5
Role: network-operator
Description: Predefined Network Operator group. This role cannot be modified.
Vsan policy: permit (default)
-------------------------------------------------
Rule
-------------------------------------------------
1
2
3
4
5
6
Role: server-admin
Description: Predefined system role for server administrators. This role
cannot be modified.
Vsan policy: permit (default)
-------------------------------------------------
Rule
-------------------------------------------------
1
2
Role: priv-15
Description: This is a system defined privilege role.
Vsan policy: permit (default)
-------------------------------------------------
Rule
-------------------------------------------------
1
2
3
4
5
Role: priv-14
Description: This is a system defined privilege role.
Vsan policy: permit (default)
Role: priv-13
Description: This is a system defined privilege role.
Vsan policy: permit (default)
synchronizes the role databases on all the switches in the fabric.
Type
Command-type
permit
clear
permit
config
permit
debug
permit
exec
permit
show
Type
Command-type
permit
show
permit
exec
permit
exec
permit
exec
permit
exec
permit
config
Type
Command-type
permit
show
permit
exec
Type
Command-type
permit
show
permit
config
permit
clear
permit
debug
permit
exec
Feature
*
*
*
*
*
Feature
*(excluding show running-config, show startup-config)
copy licenses
dir
ssh
terminal
username
Feature
*
install
Feature
*
*
*
*
*
Cisco MDS 9000 Series Security Configuration Guide, Release 8.x
Displaying Role-Based Information
19

Advertisement

Table of Contents
loading

Table of Contents