HP 6125XLG R2306-HP 6125XLG Blade Switch Fundamentals Command Reference - Page 68

super password

Page 68 highlights

Views System view Predefined user roles network-admin Parameters local: Enables local password authentication. scheme: Enables remote AAA authentication. Usage guidelines The authentication setting applies only to AUX and VTY users. A console user can obtain the user role without authentication. For local password authentication, use the super password command to set a password. For remote AAA authentication, set the username and password on the RADIUS or HWTACACS server. If you specify both local and scheme keywords, the keyword first entered in the command takes precedence, as follows: • scheme local-Enables remote-then-local authentication mode. The device first performs AAA authentication for temporary user role authorization. If the remote HWTACACS or RADIUS server does not respond or the AAA configuration on the device is invalid, local password authentication is performed. • local scheme-Enables local-then-remote authentication mode. The device first performs local password authentication. If no password is configured for the user role, the device performs remote authentication. For more information about AAA, see Security Configuration Guide. Examples # Enable local-only authentication for the temporary user role authorization. system-view [Sysname] super authentication-mode local # Enable remote-then-local authentication for the temporary user role authorization. system-view [Sysname] super authentication-mode scheme local Related commands • authentication super (Security Command Reference) • super password super password Use super password to set a password for a user role. Use undo super password to restore the default. Syntax In non-FIPS mode: super password [ role rolename ] [ { hash | simple } password ] 61

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221

61
Views
System view
Predefined user roles
network-admin
Parameters
local
: Enables local password authentication.
scheme
: Enables remote AAA authentication.
Usage guidelines
The authentication setting applies only to AUX and VTY users. A console user can obtain the user role
without authentication.
For local password authentication, use the
super password
command to set a password.
For remote AAA authentication, set the username and password on the RADIUS or HWTACACS server.
If you specify both
local
and
scheme
keywords, the keyword first entered in the command takes
precedence, as follows:
scheme local
—Enables remote-then-local authentication mode. The device first performs AAA
authentication for temporary user role authorization. If the remote HWTACACS or RADIUS server
does not respond or the AAA configuration on the device is invalid, local password authentication
is performed.
local scheme
—Enables local-then-remote authentication mode. The device first performs local
password authentication. If no password is configured for the user role, the device performs remote
authentication.
For more information about AAA, see
Security Configuration Guide
.
Examples
# Enable local-only authentication for the temporary user role authorization.
<Sysname> system-view
[Sysname] super authentication-mode local
# Enable remote-then-local authentication for the temporary user role authorization.
<Sysname> system-view
[Sysname] super authentication-mode scheme local
Related commands
authentication super
(
Security Command Reference
)
super password
super password
Use
super password
to set a password for a user role.
Use
undo super password
to restore the default.
Syntax
In non-FIPS mode:
super password
[
role
rolename
] [ {
hash
|
simple
}
password
]