Configuration procedure

To configure rules for a user role:

Step

Command

Remarks

1. Enter system view.

system-view

N/A

2. Enter user role view.

role name role-name

N/A

3. Configure rules for the user role.

  • Configure a command rule: rule number { deny | permit } command command-string

  • Configure a feature rule:rule number { deny | permit } { execute | read | write } * feature [ feature-name ]

  • Configure a feature group rule:rule number { deny | permit } { execute | read | write } * feature-group feature-group-name

  • Configure an XML element rule:rule number { deny | permit } { execute | read | write } * xml-element [ xml-string ]

  • Configure an OID rule:rule number { deny | permit } { execute | read | write } * oid oid-string

By default, a user-defined user role does not have any rule or access to any command, XML element, or MIB node.

Repeat this step to add a maximum of 256 rules to the user role.


[IMPORTANT: ]

IMPORTANT:

When you configure feature rules, you can specify only features available in the system. Enter feature names the same as the feature names are displayed, including the case.