华三设备对接思科3A服务器,服务器分配了两个账号,一个读写账号一个只读账号,其中读写账号能正常使用,只读账号只能登录没有任何权限。
在服务器端删除账号重新配置也不行。
这一批华三设备用只读账号都不是正常的,只读账号可以在华为、思科设备上正常使用。
配置上看没问题,该如何解决?
(0)
最佳答案
联系服务器侧确认吧
大概率是服务器侧权限或策略有问题
(0)
我也是这样想,一批华三设备都有这个问题,应该是出在服务器侧吧
那不是更说明问题在服务器侧么,如果话华三设备一批次有问题也不可能涉及多个型号多个产品吧
配置发出来看下呢
(0)
line class console user-role network-admin # line class vty user-role network-admin user-role network-operator # line con 0 1 user-role network-admin # line vty 0 15 authentication-mode scheme user-role network-admin user-role network-operator protocol inbound ssh idle-timeout 5 0 command accounting # line vty 16 63 user-role network-operator # ssh server enable ssh user admin service-type stelnet authentication-type password ssh server acl 3100 # password-control length 8 password-control composition type-number 3 type-length 1 # hwtacacs scheme tacacs primary authentication primary authorization primary accounting key authentication cipher $c$3$SLPkr3puBG75DBQyRPzi88JHI9o2KTIvcWNlGOVnHRU= key authorization cipher $c$3$akocJghqukb89vMmaa97IeZ6ND+t2JYG7qt6naDE8UQ= key accounting cipher $c$3$bIF65cJkIlOBL7v7LrereW12uCIvRSsMh13Ioy7msy8= user-name-format without-domain nas-ip # domain aaa authentication login hwtacacs-scheme tacacs local authorization login hwtacacs-scheme tacacs local accounting login hwtacacs-scheme tacacs local # domain system # domain default enable aaa # role default-role enable network-admin # role name level-0 description Predefined level-0 role # role name level-1 description Predefined level-1 role # role name level-2 description Predefined level-2 role # role name level-3 description Predefined level-3 role # role name level-4 description Predefined level-4 role # role name level-5 description Predefined level-5 role # role name level-6 description Predefined level-6 role # role name level-7 description Predefined level-7 role # role name level-8 description Predefined level-8 role # role name level-9 description Predefined level-9 role # role name level-10 description Predefined level-10 role # role name level-11 description Predefined level-11 role # role name level-12 description Predefined level-12 role # role name level-13 description Predefined level-13 role # role name level-14 description Predefined level-14 role # user-group system # local-user admin class manage password hash $h$6$4B1ClLYDHfIW8pEC$lSiclQxH9lDwg43ufjlHMWTXB9olOWeiuhOgJf7pDuzQlVUh9/tQvvagDX8oZMmBZ7C7CTjS5RuCi2nrGPrL7w== service-type ssh authorization-attribute user-role level-15 authorization-attribute user-role network-admin authorization-attribute user-role network-operator # security-enhanced level 1 # undo ssl renegotiation disable undo ssl version ssl3.0 disable undo ssl version tls1.0 disable undo ssl version tls1.1 disable # return
line class console user-role network-admin # line class vty user-role network-admin user-role network-operator # line con 0 1 user-role network-admin # line vty 0 15 authentication-mode scheme user-role network-admin user-role network-operator protocol inbound ssh idle-timeout 5 0 command accounting # line vty 16 63 user-role network-operator # ssh server enable ssh user admin service-type stelnet authentication-type password ssh server acl 3100 # password-control length 8 password-control composition type-number 3 type-length 1 # hwtacacs scheme tacacs primary authentication primary authorization primary accounting key authentication cipher $c$3$SLPkr3puBG75DBQyRPzi88JHI9o2KTIvcWNlGOVnHRU= key authorization cipher $c$3$akocJghqukb89vMmaa97IeZ6ND+t2JYG7qt6naDE8UQ= key accounting cipher $c$3$bIF65cJkIlOBL7v7LrereW12uCIvRSsMh13Ioy7msy8= user-name-format without-domain nas-ip # domain aaa authentication login hwtacacs-scheme tacacs local authorization login hwtacacs-scheme tacacs local accounting login hwtacacs-scheme tacacs local # domain system # domain default enable aaa # role default-role enable network-admin # role name level-0 description Predefined level-0 role # role name level-1 description Predefined level-1 role # role name level-2 description Predefined level-2 role # role name level-3 description Predefined level-3 role # role name level-4 description Predefined level-4 role # role name level-5 description Predefined level-5 role # role name level-6 description Predefined level-6 role # role name level-7 description Predefined level-7 role # role name level-8 description Predefined level-8 role # role name level-9 description Predefined level-9 role # role name level-10 description Predefined level-10 role # role name level-11 description Predefined level-11 role # role name level-12 description Predefined level-12 role # role name level-13 description Predefined level-13 role # role name level-14 description Predefined level-14 role # user-group system # local-user admin class manage password hash $h$6$4B1ClLYDHfIW8pEC$lSiclQxH9lDwg43ufjlHMWTXB9olOWeiuhOgJf7pDuzQlVUh9/tQvvagDX8oZMmBZ7C7CTjS5RuCi2nrGPrL7w== service-type ssh authorization-attribute user-role level-15 authorization-attribute user-role network-admin authorization-attribute user-role network-operator # security-enhanced level 1 # undo ssl renegotiation disable undo ssl version ssl3.0 disable undo ssl version tls1.0 disable undo ssl version tls1.1 disable # return
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
或打400热线进一步定位吧