Brocade Network OS NETCONF Operations Guide v4.1.1 Manuel d'utilisateur Page 219

  • Télécharger
  • Ajouter à mon manuel
  • Imprimer
  • Page
    / 622
  • Table des matières
  • MARQUE LIVRES
  • Noté. / 5. Basé sur avis des utilisateurs
Vue de la page 218
Network OS NETCONF Operations Guide 187
53-1003231-02
Command access rules
15
Configuration examples
The following configuration examples illustrate the step-by-step configuration of two frequently
used administrative accounts: Brocade VCS Fabric security administrator, and FCoE Fabric
administrator.
Configuring a Brocade VCS Fabric security administrator account
The following example create a role for a Brocade VCS Fabric security administrator, creates a user
account and associates it with the newly created role, and creates rules to specify the RBAC
permissions for the NetworkSecurityAdmin role.
This example grants the secAdminUser account access to the configuration-level commands role,
rule, username, aaa, and radius-server. Any account associated with the NetworkSecurityAdmin
role can now create and modify user accounts, manage roles, and define rules. In addition, the role
permits configuring a RADIUS server and setting the login sequence.
<?xml version="1.0" encoding="UTF-8"?>
<rpc message-id="815" xmlns="urn:ietf:params:xml:ns:netconf:base:1.0">
<edit-config>
<target>
<running/>
</target>
<config>
<role xmlns="urn:brocade.com:mgmt:brocade-aaa">
<name>
<name>NetworkSecurityAdmin</name>
<desc>Manages security</desc>
</name>
</role>
<username xmlns="urn:brocade.com:mgmt:brocade-aaa">
<name>secAdminUser</name>
<role>NetworkSecurityAdmin</role>
<user-password>testpassword</user-password>
</username>
<rule xmlns="urn:brocade.com:mgmt:brocade-aaa">
<index>30</index>
<action>accept</action>
<operation>read-write</operation>
<role>NetworkSecurityAdmin</role>
<command>
<enumList>role</enumList>
</command>
</rule>
<rule xmlns="urn:brocade.com:mgmt:brocade-aaa">
<index>31</index>
<action>accept</action>
<operation>read-write</operation>
<role>NetworkSecurityAdmin</role>
<command>
<enumList>rule</enumList>
</command>
</rule>
<rule xmlns="urn:brocade.com:mgmt:brocade-aaa">
<index>32</index>
<action>accept</action>
<operation>read-write</operation>
<role>NetworkSecurityAdmin</role>
Vue de la page 218
1 2 ... 214 215 216 217 218 219 220 221 222 223 224 ... 621 622

Commentaires sur ces manuels

Pas de commentaire