14-User Access and Authentication Command Reference

HomeSupportReference GuidesCommand ReferencesH3C S9820-8M[S6880] Command References-R1330Pxx-6W10014-User Access and Authentication Command Reference
08-User profile commands
Title Size Download
08-User profile commands 61.42 KB

User profile commands

display user-profile

Use display user-profile to display configuration and online user information for user profiles.

Syntax

display user-profile [ name profile-name ] [ slot slot-number ]

Views

Any view

Predefined user roles

network-admin

network-operator

Parameters

name profile-name: Specifies a user profile by its name, a case-sensitive string of 1 to 31 characters. Valid characters include English letters, digits, underscores (_), minus signs (–), and dots (.). The name can start with an English letter or digit, and cannot contain only digits. The name must be unique globally. If you do not specify this option, the command displays configuration and online user information for all user profiles.

slot slot-number: Specifies an IRF member device by its member ID. If you do not specify a member device, this command displays user profile configuration and online user information for all member devices.

Examples

# Display configuration and online user information for user profile aaa.

<Sysname> display user-profile name aaa

  User-Profile: aaa

    Direction: Inbound

      Committed Access Rate:

        CIR 32 (kbps), CBS 2048 (Bytes), EBS 0 (Bytes), PIR 888 (kbps)

      Policy: p1

      Packet-filter ipv6 2222

    Direction: Outbound

      Committed Access Rate:

        Rule: If-match acl 3000

          CIR 1000 (kbps), CBS 62500 (Bytes), EBS 0 (Bytes)

      Line Rate:

        CIR 32 (kbps), CBS 2048 (Bytes), EBS 0 (Bytes), PIR 888 (kbps)

    Priority queuing: pql 1

    General Traffic Shaping:

      CIR 200 (kbps), CBS 12500 (Bytes), EBS 0 (Bytes)

      Committed Access Rate:

        CIR 32 (kbps), CBS 2048 (Bytes), EBS 0 (Bytes), PIR 888 (kbps)

    Overhead compensation length: 18

      Policy: p2

      Packet-filter 2222

    Connection-limit amount: 1000

    Connection-limit rate: 100

      Authentication-free rule:

      acl 3000

      acl name flow1

      acl ipv6 3000

      acl ipv6 name flow2

    User user_1:

      Authentication type: 802.1X

      Network attributes:

        Interface    : Twenty-FiveGigE1/0/1

        MAC address  : 0000-1111-2222

      Failed action list:

        Direction: Inbound

         Committed Access Rate:

          CIR 32 (kbps), CBS 2048 (Bytes), EBS 0 (Bytes), PIR 888 (kbps)

         Policy: p1

        Connection-limit rate: 100

    User user_2:

      Authentication type: Portal

      Network attributes:

        Interface    : Twenty-FiveGigE1/0/3

        IP address   : 172.16.187.16

        VPN          : N/A

        Service VLAN : 100

Table 1 Command output

Field

Description

User-Profile

User profile name.

Inbound

Policy applied to incoming traffic.

Outbound

Policy applied to outgoing traffic.

Line Rate

Information about user profile-based rate limiting. When the peer-advertise-bandwidth keyword is specified in the qos lr outbound command, this field displays the peer-advertise-bandwidth configuration information.

Priority queuing

Information about priority queuing applied to a user profile.

General Traffic Shaping

Information about GTS applied to a user profile.

Overhead compensation length

Packet compensation length in bytes for outbound rate limiting.

CIR

Committed information rate, in kbps.

CBS

Committed burst size, in bytes.

EBS

Excess burst size, in bytes.

PIR

Peak information rate, in kbps.

Connection-limit amount

Maximum number of user connections set by the connection limits.

Connection-limit rate

Maximum connection establishment rate set by the connection limits.

Authentication-free rule

User profile free rule.

Policy

Policy name.

Packet-filter

Packet filter that uses an IPv4 ACL.

Packet-filter ipv6

Packet filter that uses an IPv6 ACL.

QMProfile

Queue scheduling profile.

User user_1

Username of a user account with which a user profile or session group profile is associated.

Authentication type

Authentication type:

·     802.1X—802.1X authentication.

·     Portal—Portal authentication.

·     MACA—MAC authentication.

Network attributes

Online user information.

Failed action list

Actions that failed to be applied to the user.

user-profile

Use user-profile to create a user profile and enter its view, or enter the view of an existing user profile.

Use undo user-profile to delete a user profile.

Syntax

user-profile profile-name

undo user-profile profile-name

Default

No user profiles exist.

Views

System view

Predefined user roles

network-admin

Parameters

profile-name: Specifies a user profile by its name, a case-sensitive string of 1 to 31 characters. Valid characters include English letters, digits, underscores (_), minus signs (–), and dots (.). The name can start with an English letter or digit, and cannot contain only digits. The name must be unique globally.

Examples

# Create user profile a123 and enter the view of a123.

<Sysname> system-view

[Sysname] user-profile a123

[Sysname-user-profile-a123]

  • Cloud & AI
  • InterConnect
  • Intelligent Computing
  • Intelligent Storage
  • Security
  • SMB Products
  • Intelligent Terminal Products
  • Product Support Services
  • Technical Service Solutions
All Services
  • Resource Center
  • Policy
  • Online Help
  • Technical Blogs
All Support
  • Become A Partner
  • Partner Policy & Program
  • Global Learning
  • Partner Sales Resources
  • Partner Business Management
  • Service Business
All Partners
  • Profile
  • News & Events
  • Online Exhibition Center
  • Contact Us
All About Us
新华三官网