華三設備對接思科3A服務器,服務器分配了兩個賬號,一個讀寫賬號一個隻讀賬號,其中讀寫賬號能正常使用,隻讀賬號隻能登錄沒有任何權限。
在服務器端刪除賬號重新配置也不行。
這一批華三設備用隻讀賬號都不是正常的,隻讀賬號可以在華為、思科設備上正常使用。
配置上看沒問題,該如何解決?
(0)
最佳答案
聯係服務器側確認吧
大概率是服務器側權限或策略有問題
(0)
我也是這樣想,一批華三設備都有這個問題,應該是出在服務器側吧
那不是更說明問題在服務器側麼,如果話華三設備一批次有問題也不可能涉及多個型號多個產品吧
配置發出來看下呢
(0)
line class console user-role network-admin # line class vty user-role network-admin user-role network-operator # line con 0 1 user-role network-admin # line vty 0 15 authentication-mode scheme user-role network-admin user-role network-operator protocol inbound ssh idle-timeout 5 0 command accounting # line vty 16 63 user-role network-operator # ssh server enable ssh user admin service-type stelnet authentication-type password ssh server acl 3100 # password-control length 8 password-control composition type-number 3 type-length 1 # hwtacacs scheme tacacs primary authentication primary authorization primary accounting key authentication cipher $c$3$SLPkr3puBG75DBQyRPzi88JHI9o2KTIvcWNlGOVnHRU= key authorization cipher $c$3$akocJghqukb89vMmaa97IeZ6ND+t2JYG7qt6naDE8UQ= key accounting cipher $c$3$bIF65cJkIlOBL7v7LrereW12uCIvRSsMh13Ioy7msy8= user-name-format without-domain nas-ip # domain aaa authentication login hwtacacs-scheme tacacs local authorization login hwtacacs-scheme tacacs local accounting login hwtacacs-scheme tacacs local # domain system # domain default enable aaa # role default-role enable network-admin # role name level-0 description Predefined level-0 role # role name level-1 description Predefined level-1 role # role name level-2 description Predefined level-2 role # role name level-3 description Predefined level-3 role # role name level-4 description Predefined level-4 role # role name level-5 description Predefined level-5 role # role name level-6 description Predefined level-6 role # role name level-7 description Predefined level-7 role # role name level-8 description Predefined level-8 role # role name level-9 description Predefined level-9 role # role name level-10 description Predefined level-10 role # role name level-11 description Predefined level-11 role # role name level-12 description Predefined level-12 role # role name level-13 description Predefined level-13 role # role name level-14 description Predefined level-14 role # user-group system # local-user admin class manage password hash $h$6$4B1ClLYDHfIW8pEC$lSiclQxH9lDwg43ufjlHMWTXB9olOWeiuhOgJf7pDuzQlVUh9/tQvvagDX8oZMmBZ7C7CTjS5RuCi2nrGPrL7w== service-type ssh authorization-attribute user-role level-15 authorization-attribute user-role network-admin authorization-attribute user-role network-operator # security-enhanced level 1 # undo ssl renegotiation disable undo ssl version ssl3.0 disable undo ssl version tls1.0 disable undo ssl version tls1.1 disable # return
line class console user-role network-admin # line class vty user-role network-admin user-role network-operator # line con 0 1 user-role network-admin # line vty 0 15 authentication-mode scheme user-role network-admin user-role network-operator protocol inbound ssh idle-timeout 5 0 command accounting # line vty 16 63 user-role network-operator # ssh server enable ssh user admin service-type stelnet authentication-type password ssh server acl 3100 # password-control length 8 password-control composition type-number 3 type-length 1 # hwtacacs scheme tacacs primary authentication primary authorization primary accounting key authentication cipher $c$3$SLPkr3puBG75DBQyRPzi88JHI9o2KTIvcWNlGOVnHRU= key authorization cipher $c$3$akocJghqukb89vMmaa97IeZ6ND+t2JYG7qt6naDE8UQ= key accounting cipher $c$3$bIF65cJkIlOBL7v7LrereW12uCIvRSsMh13Ioy7msy8= user-name-format without-domain nas-ip # domain aaa authentication login hwtacacs-scheme tacacs local authorization login hwtacacs-scheme tacacs local accounting login hwtacacs-scheme tacacs local # domain system # domain default enable aaa # role default-role enable network-admin # role name level-0 description Predefined level-0 role # role name level-1 description Predefined level-1 role # role name level-2 description Predefined level-2 role # role name level-3 description Predefined level-3 role # role name level-4 description Predefined level-4 role # role name level-5 description Predefined level-5 role # role name level-6 description Predefined level-6 role # role name level-7 description Predefined level-7 role # role name level-8 description Predefined level-8 role # role name level-9 description Predefined level-9 role # role name level-10 description Predefined level-10 role # role name level-11 description Predefined level-11 role # role name level-12 description Predefined level-12 role # role name level-13 description Predefined level-13 role # role name level-14 description Predefined level-14 role # user-group system # local-user admin class manage password hash $h$6$4B1ClLYDHfIW8pEC$lSiclQxH9lDwg43ufjlHMWTXB9olOWeiuhOgJf7pDuzQlVUh9/tQvvagDX8oZMmBZ7C7CTjS5RuCi2nrGPrL7w== service-type ssh authorization-attribute user-role level-15 authorization-attribute user-role network-admin authorization-attribute user-role network-operator # security-enhanced level 1 # undo ssl renegotiation disable undo ssl version ssl3.0 disable undo ssl version tls1.0 disable undo ssl version tls1.1 disable # return
親~登錄後才可以操作哦!
確定你的郵箱還未認證,請認證郵箱或綁定手機後進行當前操作
舉報
×
侵犯我的權益
×
侵犯了我企業的權益
×
抄襲了我的內容
×
原文鏈接或出處
誹謗我
×
對根叔社區有害的內容
×
不規範轉載
×
舉報說明
或打400熱線進一步定位吧