System information
Operation 1-7
Software Release 2.0.1
C613-03018-00 REV A
User Privilege Levels
The router supports three levels of privilege for users: USER (lowest),
MANAGER and SECURITY OFFICER (highest). The commands that can be
executed by a user depend on the user’s privilege level and whether the router
is operating in normal or security mode:
The USER level has access to a very limited subset of commands, regardless of
whether the router is operating in normal or security mode. USER level
commands only affect the user’s own session or asynchronous port. USER
privilege applies to a user who has not logged in (i.e. is using a terminal
connected to an asynchronous port that is not in secure mode), or a user who
has logged in to a username with USER privilege.
The MANAGER level has access to the full set of commands when the router is
in normal mode. When the router is operating in security mode, users with
MANAGER privilege can not execute a subset of the commands known as the
security commands. MANAGER privilege can be gained in one of two ways:
RESET IPSEC
RESET USER
SET CONFIG
SET ENCO KEY
SET FR ENCRYPTION, DEFENCRYPTION
SET INSTALL
SET IP INT
SET IPSEC
SET PPP
SET PPP TEMPLATE
SET SA
SET SCR
SET SNMP COMMUNITY
SET SSH
SET STAR
SET USER
SHOW CONFIG
SHOW ENCO KEY
SHOW FEATURE
SHOW FILE
SHOW NVS
SHOW PPP CONFIG
SHOW STAR [=id], MKTTRANSFER, NETKEY
UPLOAD
Table 1-1: Commands requiring SECURITY OFFICER privilege when the router is
operating in security mode. (Continued)
Command Specific Parameters