Command Line Interface Guide
Page 6
... login 85 aaa authentication enable 86 login authentication 87 enable authentication 88 ip http authentication 89 ip https authentication 89 show authentication methods 90 password 92 enable password 92 username 93 show users accounts 94 6 Address Table Commands 95 bridge address 95 bridge multicast filtering 96 bridge multicast address 97 bridge multicast...
... login 85 aaa authentication enable 86 login authentication 87 enable authentication 88 ip http authentication 89 ip https authentication 89 show authentication methods 90 password 92 enable password 92 username 93 show users accounts 94 6 Address Table Commands 95 bridge address 95 bridge multicast filtering 96 bridge multicast address 97 bridge multicast...
Command Line Interface Guide
Page 20
show version 415 asset-tag 416 show system id 417 32 TACACS Commands 419 tacacs-server host 419 tacacs-server key 420 tacacs-server timeout 420 tacacs-server source-ip 421 show tacacs 422 33 TIC Commands 423 passwords min-length 423 password-aging 424 passwords aging 424 passwords history 425 passwords history hold-time 426 passwords lockout 426 aaa login-history file 427 set username active 428 set line active 428 set enable-password active 429 show passwords configuration 429 show users login-history 431 20 Contents
show version 415 asset-tag 416 show system id 417 32 TACACS Commands 419 tacacs-server host 419 tacacs-server key 420 tacacs-server timeout 420 tacacs-server source-ip 421 show tacacs 422 33 TIC Commands 423 passwords min-length 423 password-aging 424 passwords aging 424 passwords history 425 passwords history hold-time 426 passwords lockout 426 aaa login-history file 427 set username active 428 set line active 428 set enable-password active 429 show passwords configuration 429 show users login-history 431 20 Contents
Command Line Interface Guide
Page 26
...name is displayed as a privileged user. Privileged users enter directly into the device, the user is automatically in User EXEC Mode. The password is "Console" unless it has been changed using the hostname command in the device. The Privileged EXEC mode prompt is required. The... of the device "host name" followed by "#". To enter the next level, the Privileged EXEC mode, a password is displayed. Privileged EXEC Mode Privileged access is password protected to prevent unauthorized use because many of commands are restricted on a global level. console# To return from ...
...name is displayed as a privileged user. Privileged users enter directly into the device, the user is automatically in User EXEC Mode. The password is "Console" unless it has been changed using the hostname command in the device. The Privileged EXEC mode prompt is required. The... of the device "host name" followed by "#". To enter the next level, the Privileged EXEC mode, a password is displayed. Privileged EXEC Mode Privileged access is password protected to prevent unauthorized use because many of commands are restricted on a global level. console# To return from ...
Command Line Interface Guide
Page 27
...# Using the CLI 27 The following example illustrates how to access Privileged Exec mode and return back to the User EXEC mode: console>enable Enter Password: ****** console# console#disable console> The Exit command is used to return from any mode to the previous mode except when returning to features that affect...
...# Using the CLI 27 The following example illustrates how to access Privileged Exec mode and return back to the User EXEC mode: console>enable Enter Password: ****** console# console#disable console> The Exit command is used to return from any mode to the previous mode except when returning to features that affect...
Command Line Interface Guide
Page 29
... required to complete the required tasks. 3 When finished, exit the session with the quit or exit command. The standard command to set a password for this command are displayed. • Partial keyword lookup - The following steps: 1 Start the device and wait until the startup procedure is... a menu but is incomplete and the character ? The character ? The matched parameters for the administrator, enter: Console(config)# username admin password smith When working with the CLI, the command options are available in each mode or within an Interface Configuration, the CLI does provide a...
... required to complete the required tasks. 3 When finished, exit the session with the quit or exit command. The standard command to set a password for this command are displayed. • Partial keyword lookup - The following steps: 1 Start the device and wait until the startup procedure is... a menu but is incomplete and the character ? The character ? The matched parameters for the administrator, enter: Console(config)# username admin password smith When working with the CLI, the command options are available in each mode or within an Interface Configuration, the CLI does provide a...
Command Line Interface Guide
Page 33
...completed before using this document. Address Table Commands Configures bridging address tables. Command Groups 33 AAA Commands Configures connection security including authorization and passwords. Command Groups Introduction The Command Language Interface (CLI) is a network management application operated through an ASCII terminal without the use the ... the device can be accessed from a VT100 terminal connected to the Getting Started Guide and User Guide for configuring the Dell™ PowerConnect™ switch, details the procedures and provides configuration examples.
...completed before using this document. Address Table Commands Configures bridging address tables. Command Groups 33 AAA Commands Configures connection security including authorization and passwords. Command Groups Introduction The Command Language Interface (CLI) is a network management application operated through an ASCII terminal without the use the ... the device can be accessed from a VT100 terminal connected to the Getting Started Guide and User Guide for configuring the Dell™ PowerConnect™ switch, details the procedures and provides configuration examples.
Command Line Interface Guide
Page 34
... QoS information. Configures SNMP communities, traps and displays SNMP information. Configures and reports on the device. Manages and displays syslog messages. Configures TACACS commands Configures password access and control. Configures Voice VLANs and displays Voice VLAN information. Configures and displays management access-list information. Displays RMON statistics. Configures the device clock...
... QoS information. Configures SNMP communities, traps and displays SNMP information. Configures and reports on the device. Manages and displays syslog messages. Configures TACACS commands Configures password access and control. Configures Voice VLANs and displays Voice VLAN information. Configures and displays management access-list information. Displays RMON statistics. Configures the device clock...
Command Line Interface Guide
Page 36
...forward-all Enables forwarding of all Multicast frames to a routed port. Privileged User EXEC 36 Command Groups Sets a local password to control access to specific VLAN address ports. Configuration bridge multicast forbidden Forbids adding a specific Multicast address to normal ...from the forwarding database. Configuration bridge aging-time Sets the address table aging time. password enable password username show users accounts Specifies a password on an interface. VLAN Configuration bridge multicast forbidden Enables forbidding forwarding of all a port.
...forward-all Enables forwarding of all Multicast frames to a routed port. Privileged User EXEC 36 Command Groups Sets a local password to control access to specific VLAN address ports. Configuration bridge multicast forbidden Forbids adding a specific Multicast address to normal ...from the forwarding database. Configuration bridge aging-time Sets the address table aging time. password enable password username show users accounts Specifies a password on an interface. VLAN Configuration bridge multicast forbidden Enables forbidding forwarding of all a port.
Command Line Interface Guide
Page 46
... Configuration Enables the display of message-of exec banners. show banner Description Access Mode Specifies and enables a message to be displayed before the username and password login prompts. Global Configuration Enables the display of -the-day banners. Access Mode Global Configuration Management Access-level 46 Command Groups
... Configuration Enables the display of message-of exec banners. show banner Description Access Mode Specifies and enables a message to be displayed before the username and password login prompts. Global Configuration Enables the display of -the-day banners. Access Mode Global Configuration Management Access-level 46 Command Groups
Command Line Interface Guide
Page 55
Displays the service ID information. Global Configuration Sets the authentication encryption key used for Global the communication with access to the system.passwords minlength Configures the minimal length required for passwords in the local database can be used for a TACACS+ servers. Lists the open Telnet sessions. Specifies the device asset-tag. Privileged User...
Displays the service ID information. Global Configuration Sets the authentication encryption key used for Global the communication with access to the system.passwords minlength Configures the minimal length required for passwords in the local database can be used for a TACACS+ servers. Lists the open Telnet sessions. Specifies the device asset-tag. Privileged User...
Command Line Interface Guide
Page 56
...failures. Global Configuration set line active Reactivates a previously locked out line. Privileged EXEC set enable-password active Reactivates a previously locked out password. Privileged EXEC show passwords configuration Displays information about the login history of users. show ipv6 tunnel Displays information on the... the interval between DNS Queries (before Global the IP address of the ISATAP router is known) for tracking passwords history. Global Configuration aaa login-history file Enables writing to login history file. Privileged EXEC 56 Command Groups ...
...failures. Global Configuration set line active Reactivates a previously locked out line. Privileged EXEC set enable-password active Reactivates a previously locked out password. Privileged EXEC show passwords configuration Displays information about the login history of users. show ipv6 tunnel Displays information on the... the interval between DNS Queries (before Global the IP address of the ISATAP router is known) for tracking passwords history. Global Configuration aaa login-history file Enables writing to login history file. Privileged EXEC 56 Command Groups ...
Command Line Interface Guide
Page 63
... a certificate signed by Certification Authority for the system clock. Enters SSH Public Key-chain configuration mode. Enables a message to be displayed before the username and password login prompts. Configures an external time source for HTTPS. Command Modes 63 Specifies one or more authentication, authorization, and accounting (AAA) methods for use on...
... a certificate signed by Certification Authority for the system clock. Enters SSH Public Key-chain configuration mode. Enables a message to be displayed before the username and password login prompts. Configures an external time source for HTTPS. Command Modes 63 Specifies one or more authentication, authorization, and accounting (AAA) methods for use on...
Command Line Interface Guide
Page 64
...VLAN) mode. Defines static host name-to normal and privilege levels. Specifies the port to configure the device. Sets a local password to control access to -address mapping in the host cache. Enters the Interface Configuration mode to configure an Ethernet type interface. ...mode. Enables GVRP globally. Specifies authentication methods for https Configures the active certificate for http. dot1x system-auth-control enable password end gvrp enable (global) hostname interface ethernet show interfaces port-channel interface ethernet interface range port-channel interface range vlan ...
...VLAN) mode. Defines static host name-to normal and privilege levels. Specifies the port to configure the device. Sets a local password to control access to -address mapping in the host cache. Enters the Interface Configuration mode to configure an Ethernet type interface. ...mode. Enables GVRP globally. Specifies authentication methods for https Configures the active certificate for http. dot1x system-auth-control enable password end gvrp enable (global) hostname interface ethernet show interfaces port-channel interface ethernet interface range port-channel interface range vlan ...
Command Line Interface Guide
Page 70
Changes the command history buffer size for automatic baud rate detection Sets the line baud rate. Specifies a password on a line. Deletes all the GVRP statistics information. Clears all dynamic entries from the ARP cache. Deletes all ..., except static entries. LC (Line Configuration) Mode Command enable authentication exec-banner exec-timeout history history size login-banner motd-banner password autobaud speed Description Specifies the authentication method list when accessing a higher privilege level from Dynamic Host Configuration Protocol (DHCP). Enables the command...
Changes the command history buffer size for automatic baud rate detection Sets the line baud rate. Specifies a password on a line. Deletes all the GVRP statistics information. Clears all dynamic entries from the ARP cache. Deletes all ..., except static entries. LC (Line Configuration) Mode Command enable authentication exec-banner exec-timeout history history size login-banner motd-banner password autobaud speed Description Specifies the authentication method list when accessing a higher privilege level from Dynamic Host Configuration Protocol (DHCP). Enables the command...
Command Line Interface Guide
Page 85
...all TACACS servers for authentication. Specify at least one from the following table: Keyword Source or destination enable Uses the enable password for authentication. radius Uses the list of authentication methods activated when a user logs in . • list-name - ...NOTE: On the console, login succeeds without any authentication check if the authentication method is checked. line Uses the line password for authentication. Command Mode Global Configuration mode. Default Configuration The local user database is not defined. AAA Commands aaa authentication ...
...all TACACS servers for authentication. Specify at least one from the following table: Keyword Source or destination enable Uses the enable password for authentication. radius Uses the list of authentication methods activated when a user logs in . • list-name - ...NOTE: On the console, login succeeds without any authentication check if the authentication method is checked. line Uses the line password for authentication. Command Mode Global Configuration mode. Default Configuration The local user database is not defined. AAA Commands aaa authentication ...
Command Line Interface Guide
Page 86
...where x is the privilege level. Example The following table: Keyword enable line none radius tacacs Source or destination Uses the enable password for authentication. Uses the list of all RADIUS servers for a particular protocol, where list-name is any character string used to ...login authentication command. • Create a list by entering the aaa authentication login list-name method command for authentication. Uses the line password for accessing higher privilege levels. where x is the privilege level. 86 AAA Commands User Guidelines • The default and optional list...
...where x is the privilege level. Example The following table: Keyword enable line none radius tacacs Source or destination Uses the enable password for authentication. Uses the list of all RADIUS servers for a particular protocol, where list-name is any character string used to ...login authentication command. • Create a list by entering the aaa authentication login list-name method command for authentication. Uses the line password for accessing higher privilege levels. where x is the privilege level. 86 AAA Commands User Guidelines • The default and optional list...
Command Line Interface Guide
Page 87
... Default Configuration Uses the default set with the authentication login command. • list-name - On the console, the enable password is any character string used only if the previous method returns an error, not if it exists. Uses the default list ... or TACACS server include the username "$enab15$". Syntax • login authentication {default | list-name} • no password is set , only the enable password is checked. Example The following example sets authentication when accessing higher privilege levels. Console (config)# aaa authentication enable default ...
... Default Configuration Uses the default set with the authentication login command. • list-name - On the console, the enable password is any character string used only if the previous method returns an error, not if it exists. Uses the default list ... or TACACS server include the username "$enab15$". Syntax • login authentication {default | list-name} • no password is set , only the enable password is checked. Example The following example sets authentication when accessing higher privilege levels. Console (config)# aaa authentication enable default ...
Command Line Interface Guide
Page 92
... another device configuration. Encrypted password entered, copied from 1 to remove the password requirement. Syntax • password password [encrypted] • no user guidelines for which the password applies. Command Mode Line Configuration mode. Syntax • enable password [level level] password [encrypted] • no default configuration. 92 AAA Commands password The password Line Configuration mode command specifies a password on a line. Default Configuration...
... another device configuration. Encrypted password entered, copied from 1 to remove the password requirement. Syntax • password password [encrypted] • no user guidelines for which the password applies. Command Mode Line Configuration mode. Syntax • enable password [level level] password [encrypted] • no default configuration. 92 AAA Commands password The password Line Configuration mode command specifies a password on a line. Default Configuration...
Command Line Interface Guide
Page 93
...The user level. (Range: 1 -15) • encrypted - User Guidelines • No password is defined. Example The following example sets a local level 15 password "secret" to control access to the system. Example The following example configures user "bob" with... Configuration mode. Command Mode Global Configuration mode. Console (config)# enable password level 15 secret username The username Global Configuration mode command establishes a username-based authentication system. Syntax • username name [password password] [level level] [encrypted] • no user guidelines for the...
...The user level. (Range: 1 -15) • encrypted - User Guidelines • No password is defined. Example The following example sets a local level 15 password "secret" to control access to the system. Example The following example configures user "bob" with... Configuration mode. Command Mode Global Configuration mode. Console (config)# enable password level 15 secret username The username Global Configuration mode command establishes a username-based authentication system. Syntax • username name [password password] [level level] [encrypted] • no user guidelines for the...
Command Line Interface Guide
Page 94
show users accounts The show users accounts Username Privilege Password Aging Password Expiry Date Lockout Bob 15 -- -- -- Example The following example displays the local users configured with access to the system. Robert 15 -- -- -- 94 AAA Commands User Guidelines • There are no default configuration. Command Mode Privileged EXEC mode. Syntax • show users accounts Default Configuration This command has no user guidelines for this command. Console# show users accounts Privileged EXEC mode command displays information about the local user database.
show users accounts The show users accounts Username Privilege Password Aging Password Expiry Date Lockout Bob 15 -- -- -- Example The following example displays the local users configured with access to the system. Robert 15 -- -- -- 94 AAA Commands User Guidelines • There are no default configuration. Command Mode Privileged EXEC mode. Syntax • show users accounts Default Configuration This command has no user guidelines for this command. Console# show users accounts Privileged EXEC mode command displays information about the local user database.