User Guide
OmniAccess SafeGuard OS Administration Guide
214
Chapter 6: Configuring Authentication and Role Derivation
show aaa users {[user-name Name] | [ip-address Ipaddr] | [mac-address Mac]
| [
port-number slot/port| [role-name rolename] | [vlan vlanid]}
Show AAA Users Command on page 396 shows the output format from the show aaa users
command.
Based on the options, this command displays in tabular or single-user form the following
information.
Syntax Description Name (Optional) Filter the user table and show entries
corresponding to the given user name. User
name here is case-sensitive. A single user can be
authenticated on multiple hosts and multiple
interfaces.
Ipaddr (Optional) Filter the user table and only show the
entry which corresponds to the argument IP
address.
Mac (Optional) Filter the user table and only show
entries corresponding to the given MAC
address. For a single MAC address there may be
more than one entry, if that MAC has more than
one IP address mapped to it. MAC addresses
may be specified in any of the following formats:
■ aa:bb:cc:dd:ee:ff
■ aabb:ccdd:eeff
■ aa-bb-cc-dd-ee-ff
■ aabb.ccdd.eeff
■ aabbccddeeff
slot/port (Optional) Filter the user table by the interface.
The interface is entered in slot/port notation.
rolename (Optional) Filter the user table by the given role
name. The role name is case-sensitive.
vlan_id (Optional) Filter the user table by the VLAN ID.
Field Description
Port Physical port on which the user was detected.
IP Address IP address for the interface of the user.
User Name Username as detected by its authentication.
Role Role derived for this user-based on the authentication
protocol, server, and username.










