Cisco PIX 525 Spezifikationen Seite 305

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 466
  • Inhaltsverzeichnis
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 304
9-3
Cisco PIX Firewall and VPN Configuration Guide
78-15033-01
Chapter 9 Accessing and Monitoring PIX Firewall
Command Authorization and LOCAL User Authentication
For example, the following command assigns the enable password Passw0rD to privilege Level 10:
enable password Passw0rD level 10
The following example shows the usage of the enable password command with the encrypted keyword:
enable password .SUTWWLlTIApDYYx level 9 encrypted
Note Encrypted passwords that are associated with a level can only be moved among PIX Firewall units along
with the associated levels.
Once the different privilege levels are created, you can gain access to a particular privilege level from
the > prompt by entering the enable command, as follows:
pix> enable [privilege level]
Replace privilege level with the privilege level to which you want to gain access. If the privilege level is
not specified, the default of 15 is used. By default, privilege level 15 is assigned the password cisco. It
will always have a password associated with it unless someone assigns it a blank password using the
enable password command.
User Authentication
This section describes how to configure the PIX Firewall to use LOCAL user authentication. It includes
the following topics:
Creating User Accounts in the LOCAL Database, page 9-3
User Authentication Using the LOCAL Database, page 9-4
Viewing the Current User Account, page 9-5
Note PIX Firewall Version 6.2 only supports authentication using the LOCAL database for administrative
access to the PIX
Firewall. When using PIX Firewall Version 6.3 or higher, you can also use the LOCAL
database for authentication through the PIX
Firewall. For further information, refer to “Configuring
AAA” in Chapter 3, “Controlling Network Access and Use.
Creating User Accounts in the LOCAL Database
To define a user account in the LOCAL database, enter the following command:
username username {nopassword|password password [encrypted]} [privilege level]
Replace username with a character string from four to fifteen characters long. Replace password with a
character string from three to sixteen characters long. Replace privilege level with the privilege level you
want to assign to the new user account (from 0 to 15). Use the nopassword keyword to create a user
account with no password. Use the encrypted keyword if the password you are supplying is already
encrypted.
Note The username database that you configure can be moved among PIX Firewall units with the rest of the
configuration. Encrypted passwords can only be moved along with the associated username in the
database.
Seitenansicht 304
1 2 ... 300 301 302 303 304 305 306 307 308 309 310 ... 465 466

Kommentare zu diesen Handbüchern

Keine Kommentare