H3C Technologies H3C S3100 Series Switches User Manual
Page 319

Operation Manual – AAA – RADIUS – HWTACACS
H3C S3100-52P Ethernet Switch
Chapter 1 AAA & RADIUS & HWTACACS
Configuration
1-20
Operation
Command
Description
Authorize the user to
access specified type(s)
of service
service-type
{ ftp |
lan-access
| { telnet |
ssh
| terminal }* [ level
level
] }
Required
By default, the system
does not authorize the
user to access any
service.
Set the privilege level of
the user
level level
Optional
By default, the privilege
level of the user is 0.
Set the attributes of the
user whose service type
is lan-access
attribute
{ ip ip-address |
mac
mac-address
|
idle-cut
second
|
access-limit
max-user-number
| vlan
vlan-id
| location { nas-ip
ip-address port
port-number
| port
port-number
} }*
Optional
When binding the user to
a remote port, you must
use nas-ip ip-address to
specify a remote access
server IP address (here,
ip-address
is 127.0.0.1 by
default, representing this
device). When binding the
user to a local port, you
need not use nas-ip
ip-address
.