Command Line Interface Guide
Page 6
... login 85 aaa authentication enable 86 login authentication 87 enable authentication 88 ip http authentication 89 ip https authentication 89 show authentication methods 90 password 92 enable password 92 username 93 show users accounts 94 6 Address Table Commands 95 bridge address 95 bridge multicast filtering 96 bridge multicast address 97 bridge multicast...
... login 85 aaa authentication enable 86 login authentication 87 enable authentication 88 ip http authentication 89 ip https authentication 89 show authentication methods 90 password 92 enable password 92 username 93 show users accounts 94 6 Address Table Commands 95 bridge address 95 bridge multicast filtering 96 bridge multicast address 97 bridge multicast...
Command Line Interface Guide
Page 20
show version 415 asset-tag 416 show system id 417 32 TACACS Commands 419 tacacs-server host 419 tacacs-server key 420 tacacs-server timeout 420 tacacs-server source-ip 421 show tacacs 422 33 TIC Commands 423 passwords min-length 423 password-aging 424 passwords aging 424 passwords history 425 passwords history hold-time 426 passwords lockout 426 aaa login-history file 427 set username active 428 set line active 428 set enable-password active 429 show passwords configuration 429 show users login-history 431 20 Contents
show version 415 asset-tag 416 show system id 417 32 TACACS Commands 419 tacacs-server host 419 tacacs-server key 420 tacacs-server timeout 420 tacacs-server source-ip 421 show tacacs 422 33 TIC Commands 423 passwords min-length 423 password-aging 424 passwords aging 424 passwords history 425 passwords history hold-time 426 passwords lockout 426 aaa login-history file 427 set username active 428 set line active 428 set enable-password active 429 show passwords configuration 429 show users login-history 431 20 Contents
Command Line Interface Guide
Page 26
... EXEC mode from Privileged Exec mode to User EXEC mode, type the disable command at the command prompt. 26 Using the CLI The password is case sensitive. The Privileged mode gives access to prevent unauthorized use because many of the device "host name" followed by the angle...commands that do not change the configuration. The Privileged EXEC mode prompt consists of the privileged commands set operating system parameters: The password is defined as "*". The Interface Configuration mode configures specific interfaces in User EXEC command mode unless the user is not displayed on...
... EXEC mode from Privileged Exec mode to User EXEC mode, type the disable command at the command prompt. 26 Using the CLI The password is case sensitive. The Privileged mode gives access to prevent unauthorized use because many of the device "host name" followed by the angle...commands that do not change the configuration. The Privileged EXEC mode prompt consists of the privileged commands set operating system parameters: The password is defined as "*". The Interface Configuration mode configures specific interfaces in User EXEC command mode unless the user is not displayed on...
Command Line Interface Guide
Page 27
... command configure and press . The following example illustrates how to access Privileged Exec mode and return back to the User EXEC mode: console>enable Enter Password: ****** console# console#disable console> The Exit command is used to return from any mode to the previous mode except when returning to enter the Global...
... command configure and press . The following example illustrates how to access Privileged Exec mode and return back to the User EXEC mode: console>enable Enter Password: ****** console# console#disable console> The Exit command is used to return from any mode to the previous mode except when returning to enter the Global...
Command Line Interface Guide
Page 29
... on the new user. For example, in the command "show interfaces status ethernet g5," show, interfaces and status are displayed. The standard command to set a password for this command are keywords, ethernet is incomplete and the character ? is entered in using the CLI, perform the following features are not displayed. To... • Command Completion • Keyboard Shortcuts Using the CLI 29 The character ? is entered. The matched parameters for the administrator, enter: Console(config)# username admin password smith When working with the quit or exit command.
... on the new user. For example, in the command "show interfaces status ethernet g5," show, interfaces and status are displayed. The standard command to set a password for this command are keywords, ethernet is incomplete and the character ? is entered in using the CLI, perform the following features are not displayed. To... • Command Completion • Keyboard Shortcuts Using the CLI 29 The character ? is entered. The matched parameters for the administrator, enter: Console(config)# username admin password smith When working with the quit or exit command.
Command Line Interface Guide
Page 33
... maintained by entering commands from the CLI, which is a basic command-line interpreter similar to the Getting Started Guide and User Guide for configuring the Dell™ PowerConnect™ switch, details the procedures and provides configuration examples. This guide describes how the Command Line Interface (CLI) is described in setting up a minimum... device Configuration files. Basic installation configuration is structured, describes the command syntax, and describes the command functionality. AAA Commands Configures connection security including authorization and passwords.
... maintained by entering commands from the CLI, which is a basic command-line interpreter similar to the Getting Started Guide and User Guide for configuring the Dell™ PowerConnect™ switch, details the procedures and provides configuration examples. This guide describes how the Command Line Interface (CLI) is described in setting up a minimum... device Configuration files. Basic installation configuration is structured, describes the command syntax, and describes the command functionality. AAA Commands Configures connection security including authorization and passwords.
Command Line Interface Guide
Page 34
... options for entering CLI commands. Monitors activity on the device. Displays RMON statistics. Configures SNMP communities, traps and displays SNMP information. Configures TACACS commands Configures password access and control. Configures VLANs and displays VLAN information. Configures IGMP snooping and displays IGMP configuration and IGMP information. Cofigures customizable login banners on specific...
... options for entering CLI commands. Monitors activity on the device. Displays RMON statistics. Configures SNMP communities, traps and displays SNMP information. Configures TACACS commands Configures password access and control. Configures VLANs and displays VLAN information. Configures IGMP snooping and displays IGMP configuration and IGMP information. Cofigures customizable login banners on specific...
Command Line Interface Guide
Page 36
...Privileged User EXEC port security Disables new address learning on a port. address Interface Configuration show users accounts Specifies a password on a line. Establishes a username-based authentication system. Global Configuration bridge multicast address Registers MAC-layer Multicast addresses to... the bridge VLAN table, and adds static ports to normal and privilege levels. password enable password username show bridge address-table Displays dynamically created entries in the static bridge-forwarding database. Privileged User ...
...Privileged User EXEC port security Disables new address learning on a port. address Interface Configuration show users accounts Specifies a password on a line. Establishes a username-based authentication system. Global Configuration bridge multicast address Registers MAC-layer Multicast addresses to... the bridge VLAN table, and adds static ports to normal and privilege levels. password enable password username show bridge address-table Displays dynamically created entries in the static bridge-forwarding database. Privileged User ...
Command Line Interface Guide
Page 46
...-list, and enters the accesslist for an Interface interface. show banner Description Access Mode Specifies and enables a message to be displayed before the username and password login prompts.
...-list, and enters the accesslist for an Interface interface. show banner Description Access Mode Specifies and enables a message to be displayed before the username and password login prompts.
Command Line Interface Guide
Page 55
...Activates/deactivates specified features. Configuration Displays configuration and statistics for Global the communication with access to the system.passwords minlength Configures the minimal length required for all Global TACACS+ communications between the device Configuration and the TACACS...+ daemon. Displays the service ID information. Configuration passwords aging Configures the aging time of username passwords and Global enables passwords. Displays information on features control Displays the system version information. Specifies the ...
...Activates/deactivates specified features. Configuration Displays configuration and statistics for Global the communication with access to the system.passwords minlength Configures the minimal length required for all Global TACACS+ communications between the device Configuration and the TACACS...+ daemon. Displays the service ID information. Configuration passwords aging Configures the aging time of username passwords and Global enables passwords. Displays information on features control Displays the system version information. Specifies the ...
Command Line Interface Guide
Page 56
... is no active ISATAP Configuration router). show users login-history Displays information about the passwords management Privileged EXEC configuration. Global Configuration show passwords configuration Displays information about the login history of users. Privileged EXEC show ipv6 tunnel ...name. Global Configuration aaa login-history file Enables writing to login history file. Privileged EXEC 56 Command Groups Configuration passwords lockout Enables lockout of a user account after a series of DNS Query/Router Solicitation refresh messages that represents a ...
... is no active ISATAP Configuration router). show users login-history Displays information about the passwords management Privileged EXEC configuration. Global Configuration show passwords configuration Displays information about the login history of users. Privileged EXEC show ipv6 tunnel ...name. Global Configuration aaa login-history file Enables writing to login history file. Privileged EXEC 56 Command Groups Configuration passwords lockout Enables lockout of a user account after a series of DNS Query/Router Solicitation refresh messages that represents a ...
Command Line Interface Guide
Page 63
... (daylight saving time). Generates a HTTPS certificate. Specifies and enables a message-of unregistered multicast addresses. Specifies and enables a message to be displayed before the username and password login prompts. Command Modes GC (Global Configuration) Mode Command aaa authentication enable aaa authentication login aaa authentication dot1x arp arp timeout asset-tag banner exec...
... (daylight saving time). Generates a HTTPS certificate. Specifies and enables a message-of unregistered multicast addresses. Specifies and enables a message to be displayed before the username and password login prompts. Command Modes GC (Global Configuration) Mode Command aaa authentication enable aaa authentication login aaa authentication dot1x arp arp timeout asset-tag banner exec...
Command Line Interface Guide
Page 64
... methods for use by a secure web browser to configure the device. Enters the Interface Configuration mode to default. Sets a local password to control access to be configured from a secured browser. Enables the device to normal and privilege levels. dot1x system-auth-control enable... password end gvrp enable (global) hostname interface ethernet show interfaces port-channel interface ethernet interface range port-channel interface range vlan interface...
... methods for use by a secure web browser to configure the device. Enters the Interface Configuration mode to default. Sets a local password to control access to be configured from a secured browser. Enables the device to normal and privilege levels. dot1x system-auth-control enable... password end gvrp enable (global) hostname interface ethernet show interfaces port-channel interface ethernet interface range port-channel interface range vlan interface...
Command Line Interface Guide
Page 70
Enables the command history function. Specifies a password on a line. Deletes all dynamic entries from the internal logging buffer. 70 Command Modes Clears all entries in the IPv6 neighbor discovery cache, ...) permit (management) Description Defines a deny rule. LC (Line Configuration) Mode Command enable authentication exec-banner exec-timeout history history size login-banner motd-banner password autobaud speed Description Specifies the authentication method list when accessing a higher privilege level from a remote telnet or console. Enables the display of exec banners. Defines...
Enables the command history function. Specifies a password on a line. Deletes all dynamic entries from the internal logging buffer. 70 Command Modes Clears all entries in the IPv6 neighbor discovery cache, ...) permit (management) Description Defines a deny rule. LC (Line Configuration) Mode Command enable authentication exec-banner exec-timeout history history size login-banner motd-banner password autobaud speed Description Specifies the authentication method list when accessing a higher privilege level from a remote telnet or console. Enables the display of exec banners. Defines...
Command Line Interface Guide
Page 85
Specify at least one from the following table: Keyword Source or destination enable Uses the enable password for authentication. none Uses no form of this argument as the command aaa authentication login list-name local. Uses the ...login {default | list-name} • default - local Uses the local username database for authentication. Command Mode Global Configuration mode. line Uses the line password for authentication. tacacs Uses the list of authentication methods activated when a user logs in . • list-name - Default Configuration The local user database...
Specify at least one from the following table: Keyword Source or destination enable Uses the enable password for authentication. none Uses no form of this argument as the command aaa authentication login list-name local. Uses the ...login {default | list-name} • default - local Uses the local username database for authentication. Command Mode Global Configuration mode. line Uses the line password for authentication. tacacs Uses the list of authentication methods activated when a user logs in . • list-name - Default Configuration The local user database...
Command Line Interface Guide
Page 86
...levels. • list-name - Example The following table: Keyword enable line none radius tacacs Source or destination Uses the enable password for a particular protocol, where list-name is any character string used to name this list. Console (config)# aaa authentication login ...Uses username "$enabx$." Uses the listed authentication methods that the authentication succeeds even if all RADIUS servers for authentication. Uses the line password for accessing higher privilege levels. Uses no aaa authentication enable default • default - where x is the privilege level. Character...
...levels. • list-name - Example The following table: Keyword enable line none radius tacacs Source or destination Uses the enable password for a particular protocol, where list-name is any character string used to name this list. Console (config)# aaa authentication login ...Uses username "$enabx$." Uses the listed authentication methods that the authentication succeeds even if all RADIUS servers for authentication. Uses the line password for accessing higher privilege levels. Uses no aaa authentication enable default • default - where x is the privilege level. Character...
Command Line Interface Guide
Page 87
...it fails. The method argument identifies the list of this list. Syntax • login authentication {default | list-name} • no password is checked. Command Mode Global Configuration mode. Use the no form of methods that the authentication succeeds even if all methods return an error... same effect as the command aaa authentication enable default enable. Default Configuration If the default list is not set, only the enable password is set with the command authentication login. User Guidelines • The default and optional list names created with the aaa authentication enable...
...it fails. The method argument identifies the list of this list. Syntax • login authentication {default | list-name} • no password is checked. Command Mode Global Configuration mode. Use the no form of methods that the authentication succeeds even if all methods return an error... same effect as the command aaa authentication enable default enable. Default Configuration If the default list is not set, only the enable password is set with the command authentication login. User Guidelines • The default and optional list names created with the aaa authentication enable...
Command Line Interface Guide
Page 92
Example The following example specifies a password 'secret' on a line. Password for this level, from another device configuration. Syntax • password password [encrypted] • no enable password [level level] • password - Encrypted password to normal and privilege levels. Command Mode Line Configuration mode. Syntax • enable password [level level] password [encrypted] • no password • password - If not specified the level is required...
Example The following example specifies a password 'secret' on a line. Password for this level, from another device configuration. Syntax • password password [encrypted] • no enable password [level level] • password - Encrypted password to normal and privilege levels. Command Mode Line Configuration mode. Syntax • enable password [level level] password [encrypted] • no password • password - If not specified the level is required...
Command Line Interface Guide
Page 93
... user level. (Range: 1 -15) • encrypted - Default Configuration No user is required. Syntax • username name [password password] [level level] [encrypted] • no user guidelines for the user. (Range: 8 - 64 characters) • level - Console (config)# username bob... password lee level 15 AAA Commands 93 Use the no form of the user. (Range: 1 - 20 characters) • password - Example The following example configures user "bob" with the password "lee" and user level 15 to user and privilege levels...
... user level. (Range: 1 -15) • encrypted - Default Configuration No user is required. Syntax • username name [password password] [level level] [encrypted] • no user guidelines for the user. (Range: 8 - 64 characters) • level - Console (config)# username bob... password lee level 15 AAA Commands 93 Use the no form of the user. (Range: 1 - 20 characters) • password - Example The following example configures user "bob" with the password "lee" and user level 15 to user and privilege levels...
Command Line Interface Guide
Page 94
show users accounts The show users accounts Username Privilege Password Aging Password Expiry Date Lockout Bob 15 -- -- -- Console# show users accounts Privileged EXEC mode command displays information about the local user database. Syntax • show users accounts Default Configuration This command has no user guidelines for this command. Robert 15 -- -- -- 94 AAA Commands Example The following example displays the local users configured with access to the system. User Guidelines • There are no default configuration. Command Mode Privileged EXEC mode.
show users accounts The show users accounts Username Privilege Password Aging Password Expiry Date Lockout Bob 15 -- -- -- Console# show users accounts Privileged EXEC mode command displays information about the local user database. Syntax • show users accounts Default Configuration This command has no user guidelines for this command. Robert 15 -- -- -- 94 AAA Commands Example The following example displays the local users configured with access to the system. User Guidelines • There are no default configuration. Command Mode Privileged EXEC mode.