Command Line Interface Guide
Page 65
... count Multicast packets. Sets the authentication and encryption key for configuration and enters the Line Configuration command mode. Defines an IPv6 default gateway. Configures a static entry in the host name cache. Identifies a specific line for all RADIUS communications between the router ...server deadtime radius-server host radius-server key Enables the device to be expedite queues. Configures the system LACP priority. Specifies the login authentication method list for configuration. Defines a management Access-List, and enters the Access-List for a remote telnet or console....
... count Multicast packets. Sets the authentication and encryption key for configuration and enters the Line Configuration command mode. Defines an IPv6 default gateway. Configures a static entry in the host name cache. Identifies a specific line for all RADIUS communications between the router ...server deadtime radius-server host radius-server key Enables the device to be expedite queues. Configures the system LACP priority. Specifies the login authentication method list for configuration. Defines a management Access-List, and enters the Access-List for a remote telnet or console....
Command Line Interface Guide
Page 73
...one of the egress queues. show ip igmp snooping groups Displays Multicast groups learned by IGMP snooping. show hosts Displays the default domain name, a list of name server hosts, the static and the cached list of interfaces configured for IP. show... statistics Displays GVRP statistics. show line Displays line parameters. show history Lists the commands entered in the current session. login Changes a login username. show ip igmp snooping interface Displays IGMP snooping configuration. show lacp ethernet Displays LACP information for QoS. show ...
...one of the egress queues. show ip igmp snooping groups Displays Multicast groups learned by IGMP snooping. show hosts Displays the default domain name, a list of name server hosts, the static and the cached list of interfaces configured for IP. show... statistics Displays GVRP statistics. show line Displays line parameters. show history Lists the commands entered in the current session. login Changes a login username. show ip igmp snooping interface Displays IGMP snooping configuration. show lacp ethernet Displays LACP information for QoS. show ...
Command Line Interface Guide
Page 85
... mode. AAA Commands aaa authentication login The aaa authentication login Global Configuration mode commands defines login authentication. Character string used to the default configuration. none Uses no aaa authentication login {default | list-name} • default - Uses the listed authentication methods...TACACS servers for authentication. This has the same effect as the default list of this argument as the command aaa authentication login list-name local. Syntax • aaa authentication login {default | list-name} method1 [method2...] • no authentication....
... mode. AAA Commands aaa authentication login The aaa authentication login Global Configuration mode commands defines login authentication. Character string used to the default configuration. none Uses no aaa authentication login {default | list-name} • default - Uses the listed authentication methods...TACACS servers for authentication. This has the same effect as the default list of this argument as the command aaa authentication login list-name local. Syntax • aaa authentication login {default | list-name} method1 [method2...] • no authentication....
Command Line Interface Guide
Page 86
.... Uses the list of all TACACS+ servers for authentication. Uses no aaa authentication enable default • default - Uses username "$enabx$." Console (config)# aaa authentication login default radius local enable none aaa authentication enable The aaa authentication enable Global Configuration mode command defines ... error, not if it fails. where x is the privilege level. User Guidelines • The default and optional list names created with the aaa authentication login command are used to name this command to return to name the list of authentication methods activated, ...
.... Uses the list of all TACACS+ servers for authentication. Uses no aaa authentication enable default • default - Uses username "$enabx$." Console (config)# aaa authentication login default radius local enable none aaa authentication enable The aaa authentication enable Global Configuration mode command defines ... error, not if it fails. where x is the privilege level. User Guidelines • The default and optional list names created with the aaa authentication login command are used to name this command to return to name the list of authentication methods activated, ...
Command Line Interface Guide
Page 87
.... • Create a list by the authentication login command. Console (config)# aaa authentication enable default enable login authentication The login authentication Line Configuration mode command specifies the login authentication method list for a remote telnet, SSH or console. Syntax • login authentication {default | list-name} • no form of ...are used only if the previous method returns an error, not if it exists. Uses the default list created with the authentication login command. On the console, the enable password is any character string used if it fails. Use the ...
.... • Create a list by the authentication login command. Console (config)# aaa authentication enable default enable login authentication The login authentication Line Configuration mode command specifies the login authentication method list for a remote telnet, SSH or console. Syntax • login authentication {default | list-name} • no form of ...are used only if the previous method returns an error, not if it exists. Uses the default list created with the authentication login command. On the console, the enable password is any character string used if it fails. Use the ...
Command Line Interface Guide
Page 88
... a remote telnet, SSH or console. User Guidelines • Changing login authentication from default to the default specified by the enable authentication command. Syntax • enable authentication {default | list-name} • no enable authentication • default - Command Mode Line Configuration mode. Example The following example specifies the default authentication method for this command to return to another...
... a remote telnet, SSH or console. User Guidelines • Changing login authentication from default to the default specified by the enable authentication command. Syntax • enable authentication {default | list-name} • no enable authentication • default - Command Mode Line Configuration mode. Example The following example specifies the default authentication method for this command to return to another...
Command Line Interface Guide
Page 91
Console# show authentication methods Login Authentication Method Lists Console_Default: None Network_Default: Local Enable Authentication Method Lists Console_Default: Enable None Network_Default: Enable Line Console Telnet SSH Login Method List Default Default Default Enable Method List Default Default Default http https dot1x : Tacacs Local : Tacacs Local : AAA Commands 91 Example The following example displays the authentication configuration. User Guidelines • There are no user guidelines for this command. Command Mode Privileged EXEC mode.
Console# show authentication methods Login Authentication Method Lists Console_Default: None Network_Default: Local Enable Authentication Method Lists Console_Default: Enable None Network_Default: Enable Line Console Telnet SSH Login Method List Default Default Default Enable Method List Default Default Default http https dot1x : Tacacs Local : Tacacs Local : AAA Commands 91 Example The following example displays the authentication configuration. User Guidelines • There are no user guidelines for this command. Command Mode Privileged EXEC mode.
Command Line Interface Guide
Page 115
...line and can be included. After the user logs in the message text can be a multi-line message. Command Mode Global Configuration mode. Default Configuration Disabled (no banner exec • d - Then enter one or more blank spaces and a delimiting character. A delimiting character cannot be... used in ). Syntax • banner exec d message d • no EXEC banner is displayed). Login Banner 115 Login Banner banner exec The banner exec Global Configuration mode command specifies and enables a message to be displayed when an EXEC process is ...
...line and can be included. After the user logs in the message text can be a multi-line message. Command Mode Global Configuration mode. Default Configuration Disabled (no banner exec • d - Then enter one or more blank spaces and a delimiting character. A delimiting character cannot be... used in ). Syntax • banner exec d message d • no EXEC banner is displayed). Login Banner 115 Login Banner banner exec The banner exec Global Configuration mode command specifies and enables a message to be displayed when an EXEC process is ...
Command Line Interface Guide
Page 117
.... Using this token again indicates the end of the bold text. Displays the system location string. Default Configuration Disabled (no Login banner is displayed. • To customize the banner, use the no banner login • d - After the user logs in the message text. Using this token again indicates ...the end of -the-day (MOTD) banner appears first, followed by the login banner and prompts. Displays the base MAC address of the delimiting character. • When a user connects to the device, the EXEC banner is...
.... Using this token again indicates the end of the bold text. Displays the system location string. Default Configuration Disabled (no Login banner is displayed. • To customize the banner, use the no banner login • d - After the user logs in the message text. Using this token again indicates ...the end of -the-day (MOTD) banner appears first, followed by the login banner and prompts. Displays the base MAC address of the delimiting character. • When a user connects to the device, the EXEC banner is...
Command Line Interface Guide
Page 118
... character, for example a pound sign (#). A delimiting character cannot be included. Tokens are described in to delete the existing MOTD banner. Default Configuration Disabled (no MOTD banner is replaced by the login banner and prompts. User Guidelines • Follow this command to the device, the EXEC banner is used in the banner message...
... character, for example a pound sign (#). A delimiting character cannot be included. Tokens are described in to delete the existing MOTD banner. Default Configuration Disabled (no MOTD banner is replaced by the login banner and prompts. User Guidelines • Follow this command to the device, the EXEC banner is used in the banner message...
Command Line Interface Guide
Page 120
... Line Configuration mode. Console# Console (config)# line console Console(config-line)# login-banner 120 Login Banner User Guidelines • There are no user guidelines for this command. Default Configuration Enabled Command Mode Line Configuration mode User Guidelines • There are no... for this command. Console (config)# line console Console(config-line)# exec-banner login-banner The login-banner Line Configuration mode command enables the display of login banners. Use the no login-banner Default Configuration Enabled. Example The following example enables the display of...
... Line Configuration mode. Console# Console (config)# line console Console(config-line)# login-banner 120 Login Banner User Guidelines • There are no user guidelines for this command. Default Configuration Enabled Command Mode Line Configuration mode User Guidelines • There are no... for this command. Console (config)# line console Console(config-line)# exec-banner login-banner The login-banner Line Configuration mode command enables the display of login banners. Use the no login-banner Default Configuration Enabled. Example The following example enables the display of...
Command Line Interface Guide
Page 121
... (config)# line console Console(config-line)# motd-banner show banner The show banner exec Default Configuration This command has no form of this command. Login Banner 121 Use the no default configuration. User Guidelines • There are no motd-banner Default Configuration Enabled Command Mode Line Configuration mode. Syntax • show banner motd •...
... (config)# line console Console(config-line)# motd-banner show banner The show banner exec Default Configuration This command has no form of this command. Login Banner 121 Use the no default configuration. User Guidelines • There are no motd-banner Default Configuration Enabled Command Mode Line Configuration mode. Syntax • show banner motd •...
Command Line Interface Guide
Page 236
...20 236 iSCSI Commands When the no iscsi target port tcp-port-1 [tcp-port-2.... The name can be removed as default but can be defined in the system in the first login request of the configured TCP ports, AND their destination IP is one bound to which it again, this time together...Target Name to a specific IP address, the address field must be falsely loaded by non-iSCSI flows (if by using iscsi max target ports command; Default Configuration iSCSI well-known ports 3260 and 860 are only for doing any other applications also choose to use these {un-reserved} ports). • When...
...20 236 iSCSI Commands When the no iscsi target port tcp-port-1 [tcp-port-2.... The name can be removed as default but can be defined in the system in the first login request of the configured TCP ports, AND their destination IP is one bound to which it again, this time together...Target Name to a specific IP address, the address field must be falsely loaded by non-iSCSI flows (if by using iscsi max target ports command; Default Configuration iSCSI well-known ports 3260 and 860 are only for doing any other applications also choose to use these {un-reserved} ports). • When...
Command Line Interface Guide
Page 301
...host Global Configuration mode command specifies a RADIUS server host. Hostname of the following values: login, 802.1x or all. The host is used. (Range: 1 - 30) • retransmit - If unspecified, the port number defaults to delete the specified RADIUS host. Can be one of the RADIUS server host. (Range... global value is not used on the RADIUS daemon. If no radius-server host ip-address • ip-address - If unspecified, defaults to all RADIUS communications between the device and the RADIUS server. Length of the RADIUS server host. • hostname - This key must...
...host Global Configuration mode command specifies a RADIUS server host. Hostname of the following values: login, 802.1x or all. The host is used. (Range: 1 - 30) • retransmit - If unspecified, the port number defaults to delete the specified RADIUS host. Can be one of the RADIUS server host. (Range... global value is not used on the RADIUS daemon. If no radius-server host ip-address • ip-address - If unspecified, defaults to all RADIUS communications between the device and the RADIUS server. Length of the RADIUS server host. • hostname - This key must...
Command Line Interface Guide
Page 392
... The following example limits syslog messages sent to successful login events, unsuccessful login events and other login related events. To disable logging use the no default configuration. Command Mode Privileged EXEC mode. User Guidelines • There are no aaa logging login • login - Syntax • aaa logging login • no user guidelines for this command. Example The...
... The following example limits syslog messages sent to successful login events, unsuccessful login events and other login related events. To disable logging use the no default configuration. Command Mode Privileged EXEC mode. User Guidelines • There are no aaa logging login • login - Syntax • aaa logging login • no user guidelines for this command. Example The...
Command Line Interface Guide
Page 393
...are no user guidelines for this command. Command Mode Global Configuration mode. User Guidelines • Other types of the command. Default Configuration Logging file system events enabled. Example The following examplee nables logging messages related to file copy operations. Command Mode Global... Configuration mode. Example The following example enables logging messages related to AAA login events. Log messages related to file deletion and renaming. User Guidelines • There are not subject to this command....
...are no user guidelines for this command. Command Mode Global Configuration mode. User Guidelines • Other types of the command. Default Configuration Logging file system events enabled. Example The following examplee nables logging messages related to file copy operations. Command Mode Global... Configuration mode. Example The following example enables logging messages related to AAA login events. Log messages related to file deletion and renaming. User Guidelines • There are not subject to this command....
Command Line Interface Guide
Page 423
... defined in . • In a similar way; Example The following example configures the length for passwords in the local database to login. • Note that if a password is inserted in encrypted format, the minimum length requirement only gets checked when the user logs... min-length The passwords min-length Global Configuration mode command configures the minimal length required for passwords in . Use the no default configuration. Default Configuration This command has no form of this command to remove a requirement. Command Mode Global Configuration mode. Syntax • passwords...
... defined in . • In a similar way; Example The following example configures the length for passwords in the local database to login. • Note that if a password is inserted in encrypted format, the minimum length requirement only gets checked when the user logs... min-length The passwords min-length Global Configuration mode command configures the minimal length required for passwords in . Use the no default configuration. Default Configuration This command has no form of this command to remove a requirement. Command Mode Global Configuration mode. Syntax • passwords...
Command Line Interface Guide
Page 424
...calculated from the day the password is defined (not from the day the aging is defined). • After a password expires a user can login for which the password applies. (Range: 1 - 15) • days - password-aging The password-aging Line Configuration mode command configures the... of this command. To disable password expiration time use the no form of days before a password change is forced. (Range: 1-365) Default Configuration Password aging is disabled. The number of this command. Syntax • passwords aging username name days • no passwords aging username ...
...calculated from the day the password is defined (not from the day the aging is defined). • After a password expires a user can login for which the password applies. (Range: 1 - 15) • days - password-aging The password-aging Line Configuration mode command configures the... of this command. To disable password expiration time use the no form of days before a password change is forced. (Range: 1-365) Default Configuration Password aging is disabled. The number of this command. Syntax • passwords aging username name days • no passwords aging username ...
Command Line Interface Guide
Page 425
... Syntax • passwords history number • no form of global passwords. User Guidelines • The aging time is defined. Command Mode Global Configuration mode. Default Configuration Passwords history is disabled. TIC Commands 425 Example The following example configures configures 40 days as the user is calculated from the day the... if the passwords history check is disabled. • The history of password changes that are required before a password in the local database can login for a user is generated. Default Configuration Password aging is disabled.
... Syntax • passwords history number • no form of global passwords. User Guidelines • The aging time is defined. Command Mode Global Configuration mode. Default Configuration Passwords history is disabled. TIC Commands 425 Example The following example configures configures 40 days as the user is calculated from the day the... if the passwords history check is disabled. • The history of password changes that are required before a password in the local database can login for a user is generated. Default Configuration Password aging is disabled.
Command Line Interface Guide
Page 427
... counters. • Changing the authentication failures threshold does not reset the counters. TIC Commands 427 Syntax • passwords lockout number • no aaa login-history file Default Configuration Enabled. Default Configuration Lockout is disabled. Command Mode Global Configuration mode. Example The following example enables lockout of a user account after a series of this command...
... counters. • Changing the authentication failures threshold does not reset the counters. TIC Commands 427 Syntax • passwords lockout number • no aaa login-history file Default Configuration Enabled. Default Configuration Lockout is disabled. Command Mode Global Configuration mode. Example The following example enables lockout of a user account after a series of this command...