< Home

role group

Function

The role group command associates a role with a group.

The undo role group command cancels the association between a role and a group.

Format

role role-name group group-name

undo role role-name group group-name

Parameters

Parameter Description Value
role-name Specifies the role name. The value must be an existing role name.
group-name Specifies the group name. The value must be an existing group name.

Views

Role view

Default Level

2: Configuration level

Usage Guidelines

When a role is associated with a group, group users can access the resources within the role authority and are restricted by the host check policies configured with the role.

A group cannot belong to both a default role and a customized role, but can belong to multiple customized roles. A group must belong to a certain role, and a role can contain multiple groups.

A customized role can be associated with a maximum of 256 users and user groups. The default role has no restrictions.

Example

# Associate role role1 with group group1.

<sysname> system-view
[sysname] v-gateway abc
[sysname-abc] role
[sysname-abc-role] role role1 group group1
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >