- Community Home
- >
- Networking
- >
- IMC
- >
- Re: privilege-mode
-
- Forums
-
- Advancing Life & Work
- Advantage EX
- Alliances
- Around the Storage Block
- HPE Ezmeral: Uncut
- OEM Solutions
- Servers & Systems: The Right Compute
- Tech Insights
- The Cloud Experience Everywhere
- HPE Blog, Austria, Germany & Switzerland
- Blog HPE, France
- HPE Blog, Italy
- HPE Blog, Japan
- HPE Blog, Middle East
- HPE Blog, Russia
- HPE Blog, Saudi Arabia
- HPE Blog, South Africa
- HPE Blog, UK & Ireland
-
Blogs
- Advancing Life & Work
- Advantage EX
- Alliances
- Around the Storage Block
- HPE Blog, Latin America
- HPE Blog, Middle East
- HPE Blog, Saudi Arabia
- HPE Blog, South Africa
- HPE Blog, UK & Ireland
- HPE Ezmeral: Uncut
- OEM Solutions
- Servers & Systems: The Right Compute
- Tech Insights
- The Cloud Experience Everywhere
-
Information
- Community
- Welcome
- Getting Started
- FAQ
- Ranking Overview
- Rules of Participation
- Tips and Tricks
- Resources
- Announcements
- Email us
- Feedback
- Information Libraries
- Integrated Systems
- Networking
- Servers
- Storage
- Other HPE Sites
- Support Center
- Aruba Airheads Community
- Enterprise.nxt
- HPE Dev Community
- Cloud28+ Community
- Marketplace
-
Forums
-
Blogs
-
Information
-
English
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
01-23-2014 08:49 PM
01-23-2014 08:49 PM
privilege-mode
Hello,
I have IMC 7 and a 5412zl switch with K.15.10.0009 software. I want to login with SSH to the switch using IMC radius authentication and be left at the priviledge prompt (#) at once, without having to login twice.
In IMC I went to "User - Access User - Device User" and added an account name with:
Service Type = Console
EXEC Priority = 6
Role Name = Administrative-User
IP Address List of Managed Devices = Ip addresses of my switches
On my 5412zl I have the following Radius config:
radius-server host 10.18.7.2 key "MyRadiusPass"
aaa authentication login privilege-mode
aaa authentication web login radius local
aaa authentication web enable radius local
aaa authentication ssh login radius local
aaa authentication ssh enable radius local
The switch communicates with IMC and let's me login with the Account Name I created; however, It won't login straight into the # prompt...it always makes me login two times.
Any ideas?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
01-23-2014 11:53 PM
01-23-2014 11:53 PM
Re: privilege-mode
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
01-25-2014 07:30 PM
01-25-2014 07:30 PM
Re: privilege-mode
Lindsay,
I do not have any aaa authorization commands, only aaa authentication...
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
01-27-2014 01:13 PM
01-27-2014 01:13 PM
Re: privilege-mode
So you've got configuration to Authenticate users, but you haven't configured anything that specifies their authorization level. That's why you can login, but you're not getting the privilege level you need.
You'll probably want to configure aaa authorization to use RADIUS.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
02-04-2014 12:35 PM
02-04-2014 12:35 PM
Re: privilege-mode
Lindsay,
It is not about the priviledge level, it's about the priviledge MODE and being able to login to the switch and be left at the # prompt through AAA authentication. I don't need to authorize commands at all.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
04-11-2014 07:26 AM - edited 04-11-2014 07:27 AM
04-11-2014 07:26 AM - edited 04-11-2014 07:27 AM
Re: privilege-mode
Hello
I have the same problem with HP switch 2910 i must login twice
is there a way to make some user only see the first level the operator
and another user have full access ?
Hewlett Packard Enterprise International
- Communities
- HPE Blogs and Forum
© Copyright 2021 Hewlett Packard Enterprise Development LP