==============================逻辑一
sys
role name tftp_ssh_only
rule 1 deny command *
rule 2 permit command tftp *
rule 3 permit command quit
rule 4 permit command exit
rule 5 deny command system-view
rule 6 deny command sys
#
local-user SWback class manage
password si XXX
service-type ssh
undo authorization-attribute user-role network-operator
authorization-attribute user-role tftp_ssh_only
sa fo
ret
quit
quit
=======================逻辑二
sys
role name tftp_ssh_only
rule 2 permit command tftp *
rule 3 permit command quit
rule 4 permit command exit
rule 5 deny command system-view
rule 6 deny command sys
rule 7 deny command *
#
local-user SWback class manage
password si XXX
service-type ssh
undo authorization-attribute user-role network-operator
authorization-attribute user-role tftp_ssh_only
sa fo
ret
quit
quit
请问那个逻辑是对吗?为啥我用1 权限是符合的?为啥2反倒没有权限;匹配逻辑不是依次往下吗?
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论