By default, commands in FTOS are assigned to different privilege levels. You can access those commands
only if you have access to that privilege level. For example, to reach the
you must log in to the router, enter the
the command) and then enter the CONFIGURATION mode.
You can configure passwords to control access to the box and assign different privilege levels to users.
FTOS supports the use of passwords when you log in to the system and when you enter the
command. If you move between privilege levels, you are prompted for a password if you move to a higher
privilege level.
Configuration Task List for Privilege Levels
The following list has the configuration tasks for privilege levels and passwords.
•
Configure a username and password on page 884
•
Configure the enable password command on page 885
•
Configure custom privilege levels on page 885
•
Specify LINE mode password and privilege on page 887
•
Enable and disabling privilege levels on page 888
For a complete listing of all commands related to FTOS privilege levels and passwords, refer to the
Security chapter in the FTOS Command Reference.
Configure a username and password
In FTOS, you can assign a specific username to limit user access to the system.
To configure a username and password, use the following command in the CONFIGURATION mode:
Command Syntax
[
username name
] [
access-list-name
[
]
encryption-type
To view usernames, use the
884
|
Security
access-class
nopassword | password
] [
]
privilege level
password
show users
command for privilege level 15 (this is the default level for
enable
(mandatory)
(mandatory)
(mandatory)
(optional)
(optional)
Command Mode
Purpose
CONFIGURATION
Assign a user name and password. Configure the
optional and required parameters:
•
•
•
•
•
•
command in the EXEC Privilege mode.
protocol spanning-tree
Enter a text string up to 63 characters
name:
long.
access-class access-list-name:
name of a configured IP ACL.
Do not require the user to enter
nopassword:
a password.
Enter 0 for plain text or 7
encryption-type:
for encrypted text.
Enter a string.
password:
range: 0 to 15.
privilege level
command,
enable
Enter the