User guide

Managing Switch Security Authenticated Switch Access
OmniSwitch AOS Release 7 Switch Management Guide March 2015 page 8-5
Interaction With the User Database
By default, switch management users may be authenticated through the console port via the local user
database. If external servers are configured for other management interfaces (such as Telnet, or HTTP),
but the servers become unavailable, the switch will poll the local user database for login information.
Access to the console port provides secure failover in case of misconfiguration or if external authentica-
tion servers become unavailable. The admin user is always authorized through the console port via the
local database (provided the correct password is supplied), even if access to the console port is disabled.
The database includes information about whether or not a user is able to log into the switch and which
kinds of privileges or rights the user has for managing the switch. The database may be set up by the
admin user or any user with write privileges to the AAA commands.
See Chapter 7, “Managing Switch User Accounts,” for more information about setting up the user data-
base.