home

Supported platforms

Vyatta documentation

Learn how to install, configure, and operate the Vyatta Network Operating System (Vyatta NOS) and Orchestrator, which help drive our virtual networking and physical platforms portfolio.

Rule set in operation for the security group

After the security group is created, non members of the group are unable to change the ACM or login information, even if they are members of the administrator group.

Consider two users, secadmin and cosadmin, who belong to the administrator group. Secadmin is a member of the security group. Cosadmin is not a member of the security group.

As a member of the security group, secadmin can promote himself to a superuser. The following is an example of the login of a user called secadmin who is a member of the security group:

secadmin@vyatta:~$ configure
secadmin@vyatta# set system login user secadmin level superuser 
secadmin@vyatta# commit
The following is an example of the login of a user called cosadmin who is not a member of the security group.
cosadmin@vyatta# set system login user cosadmin level superuser 
access denied