Nortel Networks 5500 series User Manual

Page 215

Advertising
background image

Managing system users and groups

215

Table 47
Managing user accounts and passwords (cont’d.)

/cfg/sys/user

followed by:

add <username>

Adds a user account to the system. The maximum
length of the user name is 255 characters. No spaces
are allowed.

After adding a user account, you must also assign the
user account to a group (see

“Managing user groups”

(page 217)

).

You must have administrator rights in order to add user
accounts.

edit <username>

Accesses the

User <username>

menu, in order

change user settings (see

“Managing user settings”

(page 216)

).

You must have administrator rights in order to change
a user’s settings. You must also be a member of the
first group listed for the other user.

caphrase

Sets the certificate administrator’s passphrase for
encrypted private keys in a configuration backup, if the
certificate administrator role has been separated from
the administrator role.

If the admin user is a member of the certadmin group
(the default setting), the admin user is prompted for
an export passphrase to protect the private keys in
the configuration dump each time the

/cfg/ptcfg

command is used.

Set a certificate administrator export passphrase
only if the admin user has removed himself or herself
from the certadmin group and added a certificate
administrator user with certadmin group rights.
When a configuration backup is performed using
the

/cfg/ptcfg

command, the certadmin export

passphrase is automatically used (without prompting
the user) to protect the encrypted private keys. When
the

/cfg/gtcfg

command is used to restore a

configuration backup from a file exchange server, the
user is prompted for the correct certadmin passphrase,
as defined using the

caphrase

command.

Nortel Secure Network Access Switch

Using the Command Line Interface

NN47230-100

03.01

Standard

28 July 2008

Copyright © 2007, 2008 Nortel Networks

.

Advertising
This manual is related to the following products: