Anda di halaman 1dari 6

################################################################

# This is a sample configuration file for Tacacs+ to


# work with Alcatel Enterprise Swiches.
#
#
# Tacacs+ command authorization is done based on
# families of commands instead of individual commands.
#
# Each command family has a read and read-write option
#
# Users can be allowed access to zero or more command families
# to administering the Alcatel switch.
#
# The entire command family syntax is listed here
#
# read-file-management readwrite-file-management
# read-session-mgmt
readwrite-session-mgmt
# read-ssh
readwrite-ssh
# read-scp-sftp
readwrite-scp-sftp
# read-telnet-ftp
readwrite-telnet-ftp
# read-ntp
readwrite-ntp
# read-conffile-mgmt
readwrite-conffile-mgmt
# read-dshell
readwrite-dshell
# read-debug
readwrite-debug
# read-system-services readwrite-system-services
# read-xip
readwrite-xip
# read-snmp
readwrite-snmp
# read-rmon
readwrite-rmon
# read-webmgmt
readwrite-webmgmt
# read-chassis
readwrite-chassis
# read-module
readwrite-module
# read-health
readwrite-health
# read-interfaces
readwrite-interfaces
# read-aaa
readwrite-aaa
# read-portmirrormon
readwrite-portmirrormon
# read-vlan
readwrite-vlan
# read-auth-vlans
readwrite-auth-vlans
# read-bridge
readwrite-bridge
# read-spantree
readwrite-spantree
# read-802.1q
readwrite-802.1q
# read-linkagg
readwrite-linkagg
# read-pmap
readwrite-pmap
# read-iprout
readwrite-iprout
# read-iprout-rip
readwrite-iprout-rip
# read-iprout-ospf
readwrite-iprout-ospf
# read-iprout-ospfv3
readwrite-iprout-ospfv3
# read-iprout-bgp
readwrite-iprout-bgp
# read-iprout-vrrp
readwrite-iprout-vrrp
# read-iprout-iprm
readwrite-iprout-iprm
# read-iprout-ripng
readwrite-iprout-ripng
# read-ipxrout
readwrite-ipxrout
# read-ipmsrout
readwrite-ipmsrout
# read-ipms
readwrite-ipms
# read-bootp-udp-relay readwrite-bootp-udp-relay
# read-dns
readwrite-dns
# read-qos
readwrite-qos
# read-load-balancing readwrite-load-balancing
#
#######################################################

user = temp1 {
login = cleartext "temp1"
cmd = read-file-management {
permit .*
}
cmd = readwrite-file-management {
permit .*
}
cmd = read-telnet-ftp {
permit .*
}
cmd = readwrite-telnet-ftp {
permit .*
}
cmd = read-dshell {
permit .*
}
cmd = readwrite-dshell {
permit .*
}
cmd = read-debug {
permit .*
}
cmd = readwrite-debug {
permit .*
}
cmd = read-snmp {
permit .*
}
cmd = readwrite-snmp {
permit .*
}
cmd = read-rmon {
permit .*
}
cmd = readwrite-rmon {
permit .*
}
cmd = read-webmgmt {
permit .*
}
cmd = readwrite-webmgmt {
permit .*
}
cmd = read-conffile-mgmt {
permit .*
}
cmd = readwrite-conffile-mgmt {
permit .*
}

cmd = read-802.1q {
permit .*
}
cmd = readwrite-802.1q {
permit .*
}
cmd = read-module {
permit .*
}
cmd = readwrite-module {
permit .*
}
cmd = read-interfaces {
permit .*
}
cmd = readwrite-interfaces {
permit .*
}
cmd = read-portmirrormon {
permit .*
}
cmd = readwrite-portmirrormon {
permit .*
}
cmd = read-health {
permit .*
}
cmd = readwrite-health {
permit .*
}
cmd = read-iprout {
permit .*
}
cmd = readwrite-iprout {
permit .*
}
cmd =read-iprout-rip {
permit .*
}
cmd = readwrite-iprout-rip {
permit .*
}
cmd = read-iprout-ospf {
permit .*
}
cmd = readwrite-iprout-ospf {
permit .*
}
cmd = read-iprout-bgp {
permit .*
}

cmd = readwrite-iprout-bgp {
permit .*
}
cmd = read-iprout-vrrp {
permit .*
}
cmd = readwrite-iprout-vrrp {
permit .*
}
cmd = read-iprout-iprm {
permit .*
}
cmd = readwrite-iprout-iprm {
permit .*
}
cmd = read-ipxrout {
permit .*
}
cmd = readwrite-ipxrout {
permit .*
}

cmd = read-ipmsrout {
permit .*
}
cmd = readwrite-ipmsrout {
permit .*
}
cmd = read-ipms {
permit .*
}
cmd = readwrite-ipms {
permit .*
}
cmd = read-vlan {
permit .*
}
cmd = readwrite-vlan {
permit .*
}
cmd = read-bridge {
permit .*
}
cmd = readwrite-bridge {
permit .*
}
cmd = read-spantree {
permit .*
}
cmd = readwrite-spantree {
permit .*

}
cmd = read-802.1q {
permit .*
}
cmd = readwrite-802.1q {
permit .*
}
cmd = read-linkagg {
permit .*
}
cmd = readwrite-linkagg {
permit .*
}
cmd = read-bootp-udp-relay {
permit .*
}
cmd = readwrite-bootp-udp-relay {
permit .*
}
cmd = read-dns {
permit .*
}
cmd = readwrite-dns {
permit .*
}
cmd = read-qos {
permit .*
}
cmd = readwrite-qos {
permit .*
}
cmd = read-load-balancing {
permit .*
}
cmd = readwrite-load-balancing {
permit .*
}
cmd = read-session-mgmt {
permit .*
}
cmd = readwrite-session-mgmt {
permit .*
}
cmd = read-auth-vlans {
permit .*
}
cmd = readwrite-auth-vlans {
permit .*
}

cmd = read-aaa {
permit .*
}
cmd = readwrite-aaa {
permit .*
}
}
user = temp2{
login = cleartext "temp2"
expires = "May 3 2008"
cmd = read-aaa {
deny .*
}
}

Anda mungkin juga menyukai