User management includes creating a local user account (web platform user with the access type HTTP) and modifying or deleting existing user accounts.
By default, a local user named admin exists in the system. The user password is admin@huawei.com, and access types are HTTP and Terminal.
Security risks exist if the user access type is set to Telnet, FTP or HTTP. You are advised to configure the required access modes only.
A simple password brings security risks. It is recommended that you change the password to a complicated one after logging in to the web network management system using the default account. A password should consist of at least 8 characters, and contain at least two types of the following: lowercase letters, uppercase letters, numerals, special characters (such as ! $ # %). The password cannot contain spaces and single quotation marks ('). In addition, the password cannot be the same as the user name or the mirror user name.
If the password configured in local user creation or modification is the same as the default password, security risk exists. To ensure device security, change the password periodically.
The user list includes information about the users whose user types are FTP, HTTP, SSH, Telnet, Terminal, or x25-pad. The access type of a created user can be FTP, HTTP, SSH, Telnet, Terminal, or x25-pad.
Choose and click the Administrator tab, as shown in Figure 1.
Click Create to display the Create User page, as shown in Figure 2.
Table 1 describes the parameters for creating a user.
Parameter |
Description |
---|---|
User name |
Indicates the new user name. The user name cannot contain question marks (?) or spaces. |
Old password |
Indicates the current web system login password. NOTE:
This option is available only on the modification page of the current login user. This parameter is configurable only when the Old password verification upon a password change is set to ON. |
Password |
Indicates the user password. |
HTTP directory |
Indicates the directory that HTTP users can access. |
Access level |
Indicates the user level. There are two user levels in ascending order: monitoring user and management user. |
Access type |
Indicates the user access type. |
Forced offline |
Indicates whether a user is forcibly disconnected from the network. NOTE:
This parameter is only displayed on the user modification page. |
SSH User Config NOTE:
This parameter is configurable only when the Access type is set to SSH. |
|
Authentication mode |
Indicates the authentication mode for an SSH user. |
Service type |
Indicates the service type for an SSH user. |
Authorized directory |
Indicates the SFTP service authorized directory for an SSH user. |
Click the user account to be modified to access the Modify User page, as shown in Figure 3.
Table 1 describes the parameters for modifying user information. After the user attribute is changed, the user level is 3 for a management-level user and 1 for a monitoring-level user.
After you modify the user attribute, you need to log out and then log in again to make the modification take effect.