Setting a telnet password, Suppressing telnet connection rejection messages, Setting passwords for management privilege levels – Brocade FastIron Ethernet Switch Security Configuration Guide User Manual

Page 32

Advertising
background image

NOTE
You also can configure up to 16 user accounts consisting of a user name and password, and assign
each user account a management privilege level. Refer to

Local user accounts

on page 35.

Setting a Telnet password

By default, the device does not require a user name or password when you log in to the CLI using
Telnet. You can assign a password for Telnet access using one of the following methods.

Set the password "letmein" for Telnet access to the CLI using the following command at the global
CONFIG level.

device(config)#enable telnet password letmein

Syntax: [no] enable telnet password string

Suppressing Telnet connection rejection messages

By default, if a Brocade device denies Telnet management access to the device, the software sends a
message to the denied Telnet client. You can optionally suppress the rejection message. When you
enable the option, a denied Telnet client does not receive a message from the Brocade device.
Instead, the denied client simply does not gain access.

To suppress the connection rejection message, use the following CLI method.

To suppress the connection rejection message sent by the device to a denied Telnet client, enter the
following command at the global CONFIG level of the CLI.

device(config)#telnet server suppress-reject-message

Syntax: [no] telnet server suppress-reject-message

Setting passwords for management privilege levels

You can set one password for each of the following management privilege levels:

• Super User level - Allows complete read-and-write access to the system. This is generally for

system administrators and is the only management privilege level that allows you to configure
passwords.

• Port Configuration level - Allows read-and-write access for specific ports but not for global (system-

wide) parameters.

• Read Only level - Allows access to the Privileged EXEC mode and User EXEC mode of the CLI but

only with read access.

You can assign a password to each management privilege level. You also can configure up to 16 user
accounts consisting of a user name and password, and assign each user account to one of the three
privilege levels. Refer to

Local user accounts

on page 35.

NOTE
You must use the CLI to assign a password for management privilege levels.

If you configure user accounts in addition to privilege level passwords, the device will validate a user
access attempt using one or both methods (local user account or privilege level password), depending

Setting a Telnet password

32

FastIron Ethernet Switch Security Configuration Guide

53-1003088-03

Advertising