local create rsa //生成 RSA 密钥对,ssh配置很容易忘记这条命令 line vty 0 63 authentication-mode scheme user-role network-admin local-user works class manage password simple 123456 service-type ssh authorization-attribute user-role network-admin
SWA-line-vty0-4]authentication-mode scheme [SWA-line-vty0-4]protocol inbound ssh 创建本地用户 famo ,并设置用户角色为network-admin zx123456 [SWA-luser-manage-famo]service-type ssh [SWA-luser-manage-famo]authorization-attribute user-role network-admin SWA-luser-manage-client]service-type ssh [SWA-luser-manage-client]authorization-attribute user-role network-admin enable local-user [user] password simple [passwd] service-type [ftp] authorization-attribute user-role network-admin SWA-luser-manage-client]service-type ssh [SWA-luser-manage-client]authorization-attribute user-role network-admin
authentication local 用户权限设置 privilege level 15 user privilege level 15 authorization-attribute user-role network-admin local-user admin class manage password hash Admin@123 service-type ssh authorization-attribute user-role network-admin
telnet [H3C]user-interfacevty 0 4 [H3C-ui-vty0-4]authentication-mode scheme [H3C-ui-vty0-4]user-role network-admin
最后还要给用户赋予一个身份级别authoriz-attribu user-role leve-[级别]关于级别,总共有0-15个级别,其中数值越大,那么他的权限拥有等级就越高,例如最高的level-15,他就相当于network-admin
luser-manage-weijianing]service-type telnet [SW1-luser-manage-weijianing]authorization-attribute user-role network-admin
. >>> import os >>> os.system("/bin/bash") bash-4.3$ id uid=2002(admin) gid=503(network-admin) groups =503(network-admin),504(network-operator) bash-4.3$ sudo -i root@Cisco#ifconfig eth8 eth8 Link encap 我们可以添加一个管理员账号,比如执行如下命令: /isan/bin/vsh -c "configure terminal ; username test password qweASD123 role network-admin
luser-manage-ninglihua]service-type ssh telnet http https [SW1-luser-manage-ninglihua]authorization-attribute user-role network-admin
H3C_IS4-luser-admin]service-type telnet terminal [H3C_IS4-luser-admin]authorization-attribute user-role network-admin h3c-local-user-ftp]authorization-attribute user-role level-15 [h3c-local-user-ftp]authorization-attribute user-role network-admin
local-user admin class manage password simple 123456 service-type ssh authorization-attribute user-role network-admin
server enable # telnet server enable # user-interface vty 0 15 authentication-mode scheme user-role network-admin
[RTA-luser-manage-user]service-type telnet [RTA-luser-manage-user]authorization-attribute user-role network-admin
luser-manage-admin]service-type http https [SW1-luser-manage-admin]authorization-attribute user-role network-admin
cipher $c$3$2sk1GhLNtPvmqPSTob81MbnIIta40Q== service-type advpn authorization-attribute user-role network-admin
luser-manage-admin]service-type http https [SW1-luser-manage-admin]authorization-attribute user-role network-admin
luser-manage-admin]service-type http https [SW1-luser-manage-admin]authorization-attribute user-role network-admin
service-type http https authorization-attribute user-role level-15 authorization-attribute user-role network-admin
password simple 123456 //设置登录用户密码 [R2-ui-vty0-4]user privilege level 3 //设置用户等级 [R2-ui-vty0-4]user network-admin
password simple 123456 //设置登录用户密码 [R2-ui-vty0-4]user privilege level 3 //设置用户等级 [R2-ui-vty0-4]user network-admin
password simple 123456 //设置登录用户密码 [R2-ui-vty0-4]user privilege level 3 //设置用户等级 [R2-ui-vty0-4]user network-admin