Cisco Cisco Web Security Appliance S670 Betriebsanweisung

Seite von 606
 
26-9
Cisco IronPort AsyncOS 7.7 for Web User Guide
 
Chapter 26      System Administration
Administering User Accounts
Note
Any user you define can log into the appliance using any method, such as logging into the web interface 
or using SSH.
Managing Local Users
You can define any number users locally on the Web Security appliance. You can add, edit, and delete 
local users. Consider the following rules when defining local users:
  •
User names can contain lowercase letters, numbers, and the dash ( - ) character. 
  •
User names cannot start with a dash. 
  •
User names cannot be greater than 16 characters.
  •
Passwords must contain at least 6 characters.
  •
User names cannot be special names that are reserved by the system, such as “operator” or “root.”
  •
If you also use external authentication, user names should not duplicate externally-authenticated 
user names.
Note
You can define different preferences, such as language support, for local users. For more information, 
see 
The default system admin account has all administrative privileges. You can change the admin account 
password, but you cannot edit or delete this account. 
To create a new user account, specify a user name and a full name, and then assign the user to a user role 
type. Each user type provides a different level of default permissions. 
 lists the user types you 
can assign. 
Table 26-2
User Types 
Group
Description
Administrator
Allows full access to all system configuration settings. However, the 
upgradecheck
 
and 
upgradeinstall
 commands can be issued only from the system defined 
“admin” account. 
Operator
Restricts users from creating, editing, or removing user accounts. The operators 
group also restricts the use of the following commands:
  •
resetconfig
 
  •
upgradecheck
 
  •
upgradeinstall
  •
systemsetup
 or running the System Setup Wizard