Brocade Fabric OS Command Reference Manual v6.2.0 (53-1001186-01, April 2009)

Fabric OS Command Reference 817
53-1001186-01
userConfig
2
This command supports the following roles. These roles define access permissions for Fabric OS
commands. In a Logical Fabric environment, you can additionally define access to chassis-level
commands. An account can have one role in the Logical Fabric, and another role regarding chassis
commands.
User Non-administrative use, such as monitoring system activity.
Operator A subset of administrative tasks for routine switch maintenance.
SwitchAdmin Administrative use excluding security, user management, and zoning.
ZoneAdmin Zone management.
FabricAdmin Administrative use excluding user management and AD management.
BasicSwitchAdmin Administrative use with a subset of admin-level commands, mostly for
monitoring with limited switch (local) access.
Admin All administrative commands.
SecurityAdmin All switch security and user management functions.
Notes The userConfig command operates on the switch-local user database only, regardless of whether
the switch is configured to use RADIUS authentication or not.
The account database supports a maximum of 256 customer created accounts.
The backup account database is no longer supported on switches running Fabric OS v6.0 or later.
As a consequence, account recovery from backup as well as backup display option (former --show
-b option) are no longer supported in Fabric OS v6.0 or later.
The execution of this command is subject to Virtual Fabric or Admin Domain and Virtual Fabric
restrictions that may be in place. Refer to chapter 1, "Using Fabric OS commands" and Appendix A,
"Command Availability" for details.
Operands This command has the following operands:
--show Displays user account information. Only accounts with SecurityAdmin and
Admin roles can show information about accounts other than the current
login account. The following operands are optional:
username Specifies the account login name. When no operand is specified, the
command displays the current account information.
-a Displays information about all accounts.
--showad Displays Admin Domain permissions in an AD-enabled environment. The
following operand is required:
-a AD_ID_list For each AD in AD_ID_list, displays a list of users that include that AD in their
AD permissions. Specify a range (1-5) or a list of AD_IDs separated by a
comma (1,2,3), or a combination of both (1-5,7). Only users with
SecurityAdmin or Admin role may execute this command.
--showlf Displays Logical Fabric permissions in an LF-enabled environment. Only users
with SecurityAdmin or Admin role may execute this command. An operand is
required with this command. The following operands are mutually exclusive: