HP 6125XLG R2306-HP 6125XLG Blade Switch Fundamentals Configuration Guide - Page 52

FIPS compliance, Configuration task list, Creating user roles

Page 52 highlights

For more information about AAA and SSH, see Security Configuration Guide. For more information about user interfaces, see "Login overview" and "Logging in to the CLI." FIPS compliance The device supports the FIPS mode that complies with NIST FIPS 140-2 requirements. Support for features, commands, and parameters might differ in FIPS mode and non-FIPS mode. For more information about FIPS mode, see Security Configuration Guide. Configuration task list Tasks at a glance (Required.) Creating user roles (Required.) Configuring user role rules (Optional.) Configuring feature groups (Optional.) Changing resource access policies (Optional.) Assigning user roles (Optional.) Configuring temporary user role authorization Creating user roles In addition to the predefined user roles, you can create up to 64 custom user roles for granular access control. To create a user role: Step 1. Enter system view. Command system-view 2. Create a user role and enter user role view. role name role-name 3. (Optional.) Configure a description for the user role. description text Remarks N/A By default, the system has 19 predefined user roles: network-admin, network-operator, level-n (where n equals an integer in the range 0 to 15), and security-audit. Among these user roles, only the permissions and description of the user roles level-0 to level-14 are configurable. By default, a user role has no description. 45

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155

45
For more information about AAA and SSH, see
Security Configuration Guide
. For more information
about user interfaces, see "
Login overview
" and "
Logging in to the CLI
."
FIPS compliance
The device supports the FIPS mode that complies with NIST FIPS 140-2 requirements. Support for features,
commands, and parameters might differ in FIPS mode and non-FIPS mode. For more information about
FIPS mode, see
Security Configuration Guide
.
Configuration task list
Tasks at a glance
(Required.)
Creating user roles
(Required.)
Configuring user role rules
(Optional.)
Configuring feature groups
(Optional.)
Changing resource access policies
(Optional.)
Assigning user roles
(Optional.)
Configuring temporary user role authorization
Creating user roles
In addition to the predefined user roles, you can create up to 64 custom user roles for granular access
control.
To create a user role:
Step
Command
Remarks
1.
Enter system view.
system-view
N/A
2.
Create a user role and
enter user role view.
role name
role-name
By default, the system has 19 predefined
user roles: network-admin,
network-operator, level-n (where n
equals an integer in the range 0 to 15),
and security-audit. Among these user
roles, only the permissions and
description of the user roles level-0 to
level-14 are configurable.
3.
(Optional.) Configure a
description for the user
role.
description
text
By default, a user role has no
description.