Switching to a higher user privilege level – H3C Technologies H3C SecBlade LB Cards User Manual

Page 91

Advertising
background image

81

Step Command

Remarks

3.

Configure the password

for the user privilege
level.

super password [ level
user-level ] { cipher |

simple } password

If local authentication is involved, this step is
required.
By default, a privilege level has no password.
If no user privilege level is specified when you
configure the command, the user privilege

level defaults to 3.

If local-only authentication is used, a console user interface user can switch to a higher privilege level,

even if the privilege level has not been assigned a password.

Switching to a higher user privilege level

Before you switch to a higher user privilege level, obtain the required authentication data as described

in

Table 17

.

When the user privilege level switching authentication method is scheme, a privilege level switching fails

after three consecutive unsuccessful password attempts. When the user privilege level switching
authentication method is local, a privilege level switching fails after five consecutive unsuccessful

password attempts.
When the login authentication mode is scheme and the user privilege level switching authentication

method is local, a user who fails a privilege level switching authentication must wait 15 minutes before
trying again. Trying again before the 15-minute period elapses restores the wait timer to 15 minutes and

restarts the timer.
To switch the user privilege level, perform the following task in user view:

Task Command

Remarks

Switch the user privilege level. super [ level ]

When logging in to the device, a user has a user
privilege level, which depends on user interface or
authentication user level.

Table 17 Information required for user privilege level switching

User interface

authentication

mode

User privilege

level switching

authentication

mode

Information required for the

first authentication mode

Information required for the

second authentication mode

none/password

local

Password configured for the
privilege level on the device with

the super password command.

N/A

local scheme

Password configured for the
privilege level on the device with
the super password command.

Username and password
configured on the AAA server for
the privilege level.

scheme

Username and password for the
privilege level.

N/A

scheme local

Username and password for the
privilege level.

Local user privilege level
switching password.

scheme local

Password configured for the
privilege level on the device with

the super password command.

N/A

Advertising
This manual is related to the following products: