HP 10500 Series Configuration Manual page 29

Security configuration guide
Hide thumbs Also See for 10500 Series:
Table of Contents

Advertisement

Step
9.
Configure authorization
attributes for the local user.
10.
Set the validity time of the
local user.
Set the expiration time of
11.
the local user.
12.
Assign the local user to a
user group.
Configuring user group attributes
User groups simplify local user configuration and management. A user group comprises a group of local
users and has a set of local user attributes. Configure local user attributes for a user group to implement
centralized user attributes management for the local users in the group. Configurable user attributes
include password control attributes and authorization attributes.
By default, every newly added local user belongs to the default user group system and bears all attributes
of the group. To assign a local user to a different user group, use the user-group command in local user
view.
To configure attributes for a user group:
Step
1.
Enter system view.
2.
Create a user group and enter
user group view.
3.
Configure password control
attributes for the user group.
Command
authorization-attribute { acl
acl-number | idle-cut minute |
level level | user-profile
profile-name | vlan vlan-id |
work-directory directory-name } *
validity-date time
expiration-date time
group group-name
Command
system-view
user-group group-name
Set the password aging time:
password-control aging
aging-time
Set the minimum password
length:
password-control length length
Configure the password
composition policy:
password-control composition
type-number type-number
[ type-length type-length ]
19
Remarks
Optional.
By default, no authorization attribute is
configured for a local user.
For LAN and portal users, only acl,
idle-cut, user-profile, and vlan are
supported.
For SSH and terminal users, only level
is supported.
For FTP users, only level and
work-directory are supported.
For Telnet users, only level is
supported.
Optional.
Not set by default.
Optional.
Not set by default.
Optional.
By default, a local user belongs to the
default user group system.
Remarks
N/A
N/A
Optional.
By default, the user group uses
global settings, including a 90-day
password aging time, a minimum
password length of 10 characters,
and at least one password
composition type and at least one
character required for each
password composition type.

Advertisement

Table of Contents
loading

Table of Contents