T1500G-10PSUN V1 CLI Reference Guide Guide
Page 13
...27.16 27.17 27.18 27.19 27.20 27.21 27.22 27.23 27.24 27.25 aaa enable ...271 enable admin password 272 enable admin secret 273 tacacas-server host 274 show tacacs-server 275 radius-server host 276 show radius-server 277 aaa group ...278 server... ...278 show aaa group...279 aaa authentication login 280 aaa authentication enable 281 aaa authentication dot1x default 282 aaa accounting dot1x default 282 show aaa authentication 283 show aaa accounting 284 line telnet...284 login authentication(telnet 285 line ssh ...285 login authentication(ssh 286...
...27.16 27.17 27.18 27.19 27.20 27.21 27.22 27.23 27.24 27.25 aaa enable ...271 enable admin password 272 enable admin secret 273 tacacas-server host 274 show tacacs-server 275 radius-server host 276 show radius-server 277 aaa group ...278 server... ...278 show aaa group...279 aaa authentication login 280 aaa authentication enable 281 aaa authentication dot1x default 282 aaa accounting dot1x default 282 show aaa authentication 283 show aaa accounting 284 line telnet...284 login authentication(telnet 285 line ssh ...285 login authentication(ssh 286...
T1500G-10PSUN V1 CLI Reference Guide Guide
Page 18
Figure 1-3 Log in the User name and Password (the factory default value for the SSH client software. Key Authentication Mode: It requires a public key for the switch and a private key for both admin by SSH, a Putty .... There are admin) and press the Enter button to enter Privileged EXEC Mode. Type in Figure 1-5 to set up an SSH connection: Password Authentication Mode: It requires username and password, which is recommended. 3. You can generate the public key and the private key through Telnet connection. 5 Type in the Switch 4. Figure 1-4 Enter...
Figure 1-3 Log in the User name and Password (the factory default value for the SSH client software. Key Authentication Mode: It requires a public key for the switch and a private key for both admin by SSH, a Putty .... There are admin) and press the Enter button to enter Privileged EXEC Mode. Type in Figure 1-5 to set up an SSH connection: Password Authentication Mode: It requires username and password, which is recommended. 3. You can generate the public key and the private key through Telnet connection. 5 Type in the Switch 4. Figure 1-4 Enter...
T1500G-10PSUN V1 CLI Reference Guide Guide
Page 19
Enter the IP address of PuTTY. Figure 1-6 SSH Connection Config 6 keep the default value 22 in the Port field; Open the software to log on to the interface of the switch into Host Name field; Figure 1-5 Enable SSH function Password Authentication Mode 1. select SSH as the Connection type.
Enter the IP address of PuTTY. Figure 1-6 SSH Connection Config 6 keep the default value 22 in the Port field; Open the software to log on to the interface of the switch into Host Name field; Figure 1-5 Enable SSH function Password Authentication Mode 1. select SSH as the Connection type.
T1500G-10PSUN V1 CLI Reference Guide Guide
Page 27
... and the words in braces { } are required Alternative items are enumerated and only one can configure password for Admin level by enable password command. Once password is configured, you can be identified as a string. For example: bridge aging-time aging-time 1.4.2 Special Characters.... If a blank is illustrated in the Privilege Requirement in braces and separated by using the enable command. In default case, no password is divided into four privilege levels: User level, Power User level, Operator level and Admin level. 1.3 Privilege Restrictions This switch...
... and the words in braces { } are required Alternative items are enumerated and only one can configure password for Admin level by enable password command. Once password is configured, you can be identified as a string. For example: bridge aging-time aging-time 1.4.2 Special Characters.... If a blank is illustrated in the Privilege Requirement in braces and separated by using the enable command. In default case, no password is divided into four privilege levels: User level, Power User level, Operator level and Admin level. 1.3 Privilege Restrictions This switch...
T1500G-10PSUN V1 CLI Reference Guide Guide
Page 31
... digits, English letters (case sensitive), underlines and sixteen special characters By default, it is 0. After the encrypted password is configured, you should use no enable password Parameter 0 -- By default, the encryption type is empty. 7 -- encrypted-password -- Specify the encryption type. 0 indicates that an unencrypted password will be displayed in the configuration file will follow . A symmetric encrypted...
... digits, English letters (case sensitive), underlines and sixteen special characters By default, it is 0. After the encrypted password is configured, you should use no enable password Parameter 0 -- By default, the encryption type is empty. 7 -- encrypted-password -- Specify the encryption type. 0 indicates that an unencrypted password will be displayed in the configuration file will follow . A symmetric encrypted...
T1500G-10PSUN V1 CLI Reference Guide Guide
Page 32
... fixed length will follow . By default, the encryption type is empty. encrypted-password -- Example Set the super password as "admin" and unencrypted to access Privileged EXEC Mode from User EXEC Mode: T1500G-10MPS(config)#enable password 0 admin 2.5 enable secret Description The enable secret command is used to set a secret password, which you can copy from another...
... fixed length will follow . By default, the encryption type is empty. encrypted-password -- Example Set the super password as "admin" and unencrypted to access Privileged EXEC Mode from User EXEC Mode: T1500G-10MPS(config)#enable password 0 admin 2.5 enable secret Description The enable secret command is used to set a secret password, which you can copy from another...
T1500G-10PSUN V1 CLI Reference Guide Guide
Page 56
... 1 to 31 alphanumeric characters or symbols. It is used to manage the user's logging information by default. Users' login password, a string from being randomly changed. 6.1 user name (password) Description The user name command is "admin" by Web, Telnet or SSH, so as to protect... the settings of different functions without the right to edit or modify. A symmetric encrypted password with fixed length will follow . By default, the encryption type is case sensitive, allows digits, English letters (case sensitive), underlines and sixteen special characters 7 --...
... 1 to 31 alphanumeric characters or symbols. It is used to manage the user's logging information by default. Users' login password, a string from being randomly changed. 6.1 user name (password) Description The user name command is "admin" by Web, Telnet or SSH, so as to protect... the settings of different functions without the right to edit or modify. A symmetric encrypted password with fixed length will follow . By default, the encryption type is case sensitive, allows digits, English letters (case sensitive), underlines and sixteen special characters 7 --...
T1500G-10PSUN V1 CLI Reference Guide Guide
Page 58
...characters or symbols. An MD5 encrypted password with fixed length will take effect. Only the users within the IP-range you can copy from 1 to limit the IP-range of different functions. By default, the encryption type is "admin" by default. 0 -- Command Mode Global ...functions without the right to access the switch. "user" means that you set here are defined, only the latest configured password will follow . encrypted-password -- T1500G-10MPS(config)#user name tplink privilege admin secret 0 admin 6.3 user access-control ip-based Description The user access-control ip-...
...characters or symbols. An MD5 encrypted password with fixed length will take effect. Only the users within the IP-range you can copy from 1 to limit the IP-range of different functions. By default, the encryption type is "admin" by default. 0 -- Command Mode Global ...functions without the right to access the switch. "user" means that you set here are defined, only the latest configured password will follow . encrypted-password -- T1500G-10MPS(config)#user name tplink privilege admin secret 0 admin 6.3 user access-control ip-based Description The user access-control ip-...
T1500G-10PSUN V1 CLI Reference Guide Guide
Page 254
... options. To delete the corresponding User, please use no snmp-server user name Parameter name -- The Security Level of the User. By default, the option is classified to the corresponding Group according to its Group have the same security level and access right. cmode -- SHA authentication...password in the configuration file will be displayed in an SNMP Group can manage the switch via HMAC-MD5 algorithm and SHA indicates the port authentication is v1. The User and its Group Name, Security Model and Security Level. User Type, with v1, v2c and v3 options. By default...
... options. To delete the corresponding User, please use no snmp-server user name Parameter name -- The Security Level of the User. By default, the option is classified to the corresponding Group according to its Group have the same security level and access right. cmode -- SHA authentication...password in the configuration file will be displayed in an SNMP Group can manage the switch via HMAC-MD5 algorithm and SHA indicates the port authentication is v1. The User and its Group Name, Security Model and Security Level. User Type, with v1, v2c and v3 options. By default...
T1500G-10PSUN V1 CLI Reference Guide Guide
Page 255
..., ranging from 1 to access. 242 encrypt-pwd -- Example Add Local User admin to the SNMP agent from 1 to these commands. By default, the Privacy Mode is used . Command Mode Global Configuration Mode Privilege Requirement Only Admin level users have access to 16 characters. read-only |... read -write } mib-view no snmp-server community command. Privacy Password, ranging from SNMP network management station, functioning as 22222: T1500G-10MPS(config)# snmp-server user admin local group2 smode v3 slev authPriv cmode MD5 cpwd 11111 emode DES ...
..., ranging from 1 to access. 242 encrypt-pwd -- Example Add Local User admin to the SNMP agent from 1 to these commands. By default, the Privacy Mode is used . Command Mode Global Configuration Mode Privilege Requirement Only Admin level users have access to 16 characters. read-only |... read -write } mib-view no snmp-server community command. Privacy Password, ranging from SNMP network management station, functioning as 22222: T1500G-10MPS(config)# snmp-server user admin local group2 smode v3 slev authPriv cmode MD5 cpwd 11111 emode DES ...
T1500G-10PSUN V1 CLI Reference Guide Guide
Page 285
... access to admin and gain administrator level privileges. By default, the encryption type is possibly authenticated in user from guest to these commands. 272 Example Enable the AAA function globally: T1500G-10MPS(config)# aaa enable 27.2 enable admin password Description The enable admin password command is used to elevate the current logged-in RADIUS...
... access to admin and gain administrator level privileges. By default, the encryption type is possibly authenticated in user from guest to these commands. 272 Example Enable the AAA function globally: T1500G-10MPS(config)# aaa enable 27.2 enable admin password Description The enable admin password command is used to elevate the current logged-in RADIUS...
T1500G-10PSUN V1 CLI Reference Guide Guide
Page 286
... sensitive, allows digits, English letters (case sensitive), underlines and sixteen special characters By default, it is 0. Example Set the elevation password as 123 for the current logged-in user to gain administrator level privileges: T1500G-10MPS(config)#enable admin password 0 123 27.3 enable admin secret Description The enable admin secret command is configured, you...
... sensitive, allows digits, English letters (case sensitive), underlines and sixteen special characters By default, it is 0. Example Set the elevation password as 123 for the current logged-in user to gain administrator level privileges: T1500G-10MPS(config)#enable admin password 0 123 27.3 enable admin secret Description The enable admin secret command is configured, you...
T1500G-10PSUN V1 CLI Reference Guide Guide
Page 287
... it is 5 seconds. [ 0 ] string | 7 encrypted-string -- 0 and 7 are defined, you must enter the password set in the encrypted form: T1500G-10MPS (config)#enable admin secret 0 123 27.4 tacacas-server host Description The tacacs-server host command is 0. The default is 49. port-id -- Syntax tacacs-server host ip-address [ port port-id ] [ timeout...
... it is 5 seconds. [ 0 ] string | 7 encrypted-string -- 0 and 7 are defined, you must enter the password set in the encrypted form: T1500G-10MPS (config)#enable admin secret 0 123 27.4 tacacas-server host Description The tacacs-server host command is 0. The default is 49. port-id -- Syntax tacacs-server host ip-address [ port port-id ] [ timeout...
T1500G-10PSUN V1 User Guide
Page 24
... to do this, please refer to Appendix B. 2) After a moment, a login window will appear as shown in Figure 3-2. Enter admin for the User Name and Password, both in to 254), Subnet Mask is 255.255.255.0. Chapter 3 Login to the Switch 3.1 Login 1) To access the configuration utility, open a web-browser ...and type in the default address http://192.168.0.1 in the address field of the switch. The IP address is 192.168.0.x ("x" is any number from 2 to the switch, the...
... to do this, please refer to Appendix B. 2) After a moment, a login window will appear as shown in Figure 3-2. Enter admin for the User Name and Password, both in to 254), Subnet Mask is 255.255.255.0. Chapter 3 Login to the Switch 3.1 Login 1) To access the configuration utility, open a web-browser ...and type in the default address http://192.168.0.1 in the address field of the switch. The IP address is 192.168.0.x ("x" is any number from 2 to the switch, the...
T1500G-10PSUN V1 User Guide
Page 32
... subject to edit or modify. If DHCP or BOOTP option is 192.168.0.1. 4.2 User Management User Management functions to configure the user name and password for users to log on to protect the settings of the switch from the Internet, which means that you can edit, modify and view all... the settings of the switch. By default, the IP address is selected, the switch will get network parameters dynamically from being randomly changed. Choose the menu System→User Management→...
... subject to edit or modify. If DHCP or BOOTP option is 192.168.0.1. 4.2 User Management User Management functions to configure the user name and password for users to log on to protect the settings of the switch from the Internet, which means that you can edit, modify and view all... the settings of the switch. By default, the IP address is selected, the switch will get network parameters dynamically from being randomly changed. Choose the menu System→User Management→...
T1500G-10PSUN V1 User Guide
Page 45
...to the switch. select SSH as the Connection type. 2. Application Example 1 for SSH: Network Requirements 1. Enter the login user name and password, and then you can continue to download the key file. It will be replaced. After the Key File is recommended. Configuration Procedure 1. PuTTY... key of the switch into Host Name field; Click the Open button in the SSH access to log on the switch. 2. keep the default value 22 in the Port field; Please wait without any operation. 2. Download: Click the Download button to download the desired key file to...
...to the switch. select SSH as the Connection type. 2. Application Example 1 for SSH: Network Requirements 1. Enter the login user name and password, and then you can continue to download the key file. It will be replaced. After the Key File is recommended. Configuration Procedure 1. PuTTY... key of the switch into Host Name field; Click the Open button in the SSH access to log on the switch. 2. keep the default value 22 in the Port field; Please wait without any operation. 2. Download: Click the Download button to download the desired key file to...
T1500G-10PSUN V1 User Guide
Page 180
... of the corresponding port to accepted state to allow the supplicant system access the network. By default, the switch will force the supplicant to the switch with the locally-encrypted password. The 802.1X client program then forwards the packet to the switch to start the authentication process...packet in a RADIUS Access-Request packet and forwards it will monitor the status of the supplicant system with the key and sends the encrypted password (contained in a RADIUS Access-Request packet) with the user name included. And then the switch will then send feedbacks (through a ...
... of the corresponding port to accepted state to allow the supplicant system access the network. By default, the switch will force the supplicant to the switch with the locally-encrypted password. The 802.1X client program then forwards the packet to the switch to start the authentication process...packet in a RADIUS Access-Request packet and forwards it will monitor the status of the supplicant system with the key and sends the encrypted password (contained in a RADIUS Access-Request packet) with the user name included. And then the switch will then send feedbacks (through a ...
T1500G-10PSUN V1 User Guide
Page 185
By default, the global 802.1X function is , the port with the software for access. ... For the client computers, you are required to the authentication server and configure the some configuration. install the TP-Link 802.1X Client provided on the switch and for the port of the switch basing on the condition that ...function Required. Config page, configure the 802.1X feature for the port. 2. corresponding authentication username and password for the Required. Conifg page, enable the AAA function globally. 6 Configure the parameters of the clients has passed the 802....
By default, the global 802.1X function is , the port with the software for access. ... For the client computers, you are required to the authentication server and configure the some configuration. install the TP-Link 802.1X Client provided on the switch and for the port of the switch basing on the condition that ...function Required. Config page, configure the 802.1X feature for the port. 2. corresponding authentication username and password for the Required. Conifg page, enable the AAA function globally. 6 Configure the parameters of the clients has passed the 802....
T1500G-10PSUN V1 User Guide
Page 192
...Procedure 1) Select the application module. 2) Configure the authentication method list from the Login List drop-down menu. Tips: If the Enable password is tried only if the previous method does not respond, not if it fails. Login stands for the Authentication Login Method List, and... List Config Users can configure authentication method lists on the remote RADIUS server, the switch will send the Enable authentication with the default username as Login or Enable. This option defines the authentication method for authentication. tacacs: Use the remote TACACS+ server/server groups...
...Procedure 1) Select the application module. 2) Configure the authentication method list from the Login List drop-down menu. Tips: If the Enable password is tried only if the previous method does not respond, not if it fails. Login stands for the Authentication Login Method List, and... List Config Users can configure authentication method lists on the remote RADIUS server, the switch will send the Enable authentication with the default username as Login or Enable. This option defines the authentication method for authentication. tacacs: Use the remote TACACS+ server/server groups...
T1500G-10PSUN V1 User Guide
Page 193
... Entry Description: Module: Login List: Enable List: Lists of the configurable applications on the supplicant-connected port. No enable password is 5 seconds. 3) Configure the authentication method list from the Enable List drop-down menu. Please refer to load the following page... in 802.1X Authentication, Accounting and IGMP Authentication. The TACACS+ server's communication Port is 49 and Timeout is configure by default. Thisoption defines the authentication method for the login utilizing a previously configured method list. All TACACS+ servers are added in the...
... Entry Description: Module: Login List: Enable List: Lists of the configurable applications on the supplicant-connected port. No enable password is 5 seconds. 3) Configure the authentication method list from the Enable List drop-down menu. Please refer to load the following page... in 802.1X Authentication, Accounting and IGMP Authentication. The TACACS+ server's communication Port is 49 and Timeout is configure by default. Thisoption defines the authentication method for the login utilizing a previously configured method list. All TACACS+ servers are added in the...