Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.

Dell SmartFabric OS10 User Guide Release 10.5.4

PDF

aaa authorization

Enables authorization and configure the authorization methods for CLI access.

Syntax
aaa authorization {commands | config-commands | exec-commands} {role user-role} {console | default} {[group tacacs+] [local]}
Parameters
  • commands—Configure authorization for all CLI commands, including all EXEC and configuration commands.
  • config-commands—Configure authorization only for configuration commands.
  • exec-commands—Configure authorization only for EXEC commands.
  • role user-role—Configure command authorization for a user role: sysadmin, secadmin, netadmin, or netoperator.
  • console—Configure authorization for console-entered commands.
  • default—Configure authorization for non-console-entered commands and commands entered in non-console sessions, such as in SSH and VTY.
  • group tacacs+—Use the TACACS+ servers configured with the tacacs-server host command for command authorization.
  • local—Use the local username, password, and role entries configured with the username password role command for command authorization.
Default
Local authorization
Command Mode
CONFIGURATION
Usage Information
Re-enter the command to configure additional authorization methods and CLI access. The authorization methods in the method list execute in the order you configure them. Re-enter the methods to change the order. The local authorization method remains enabled even if you remove all configured methods in the list using the no aaa authorization command.

If a console user logs in with TACACS+ authorization, the role you configured for the user on the TACACS+ server applies. If no role is configured on the security server, user authorization fails.

Example
OS10(config)# aaa authorization commands role sysadmin console group tacacs+ local
OS10(config)# aaa authorization config-commands role sysadmin default group tacacs+
OS10(config)# no aaa authorization commands role sysadmin console
Supported Releases
10.5.1 or later

Rate this content

Accurate
Useful
Easy to understand
Was this article helpful?
0/3000 characters
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please select whether the article was helpful or not.
  Comments cannot contain these special characters: <>()\