Cisco Cisco Email Security Appliance C690 User Guide

Page of 456
Chapter 8      Common Administrative Tasks
Working with User Accounts
8-18
Cisco IronPort AsyncOS 7.5 for Email Daily Management Guide
OL-25138-01
Working with User Accounts
The Cisco IronPort appliance provides two methods for adding user accounts: 
creating user accounts on the Cisco IronPort appliances itself, and enabling user 
authentication using your own centralized authentication system, which can be 
either an LDAP or RADIUS directory. You can manage users and connections to 
external authentication sources on the System Administration > Users page in the 
GUI (or by using the 
userconfig
 command in the CLI). For information about 
using an external directory to authenticate users, see 
.
The default user account for the system, admin, has all administrative privileges. 
The admin user account cannot be deleted, but you can change the password and 
lock the account. 
When you create a new user account, you assign the user to a predefined or a 
custom user role. Each role contains differing levels of permissions within the 
system.
Although there is no limit to the number of user accounts that you can create on 
the appliance, you cannot create user accounts with names that are reserved by the 
system. For example, you cannot create the user accounts named “operator” or 
“root.”
 defines the roles available for user accounts.