HP 12500 Series Configuration Manual page 32

Routing
Table of Contents

Advertisement

Step
7.
Configure password
control attributes for the
local user.
8.
Configure the binding
attributes for the local user.
9.
Configure the
authorization attributes for
the local user.
Command
Set the password aging
time:
password-control aging
aging-time
Set the minimum password
length:
password-control length
length
Configure the password
composition policy:
password-control
composition type-number
type-number [ type-length
type-length ]
bind-attribute { call-number
call-number [ : subcall-number ]
| ip ip-address | location port
slot-number subslot-number
port-number | mac mac-address
| vlan vlan-id } *
authorization-attribute { acl
acl-number | callback-number
callback-number | idle-cut
minute | level level |
user-profile profile-name |
user-role { guest |
guest-manager |
security-audit } | vlan vlan-id |
work-directory directory-name }
*
22
Remarks
Optional.
By default, the local user uses password
control attributes of the user group to
which the local user belongs, and uses
the global setting for any password
control attribute that is not configured in
the user group. The global settings in
non-FIPS mode include a 90-day
password aging time, a minimum
password length of 10 characters, and at
least one password composition type
and at least one character required for
each password composition type. The
global settings in FIPS mode include a
90-day password aging time, a minimum
password length of 10 characters, and
four password composition types and at
least one character required for each
password composition type.
For more information about the
password control attribute configuration
commands, see Security Command
Reference.
Optional.
By default, no binding attribute is
configured for a local user.
Optional.
By default, no authorization attribute is
configured for a local user.
The switch does not support the
user-profile keyword and
callback-number keyword in the current
software version. The keywords are
reserved for future support.
The user-role keyword is supported only
in local user view.
For LAN and portal users, only acl,
idle-cut, and vlan are supported.
For SSH, terminal, and Web users, only
level is supported.
For FTP users, only level and
work-directory are supported.
For Telnet users, only level and user-role
is supported.
For other types of local users, no binding
attribute is supported.

Advertisement

Table of Contents
loading

Table of Contents