aaa authorization roles default

Prev Next

Changes the default role assigned to a new user.

Note

If no default role is defined, new users must be assigned a role before they can log in to the appliance.

Syntax

[no] aaa authorization roles default <role>

Parameters

no

Removes the default role for new users.

role

The default role assigned to a new user.

By default, the following roles are available on your appliance:

  • admin: Unrestricted administrative

  • privilegesoperator: Limited administrative privileges

  • monitor: Limited read-only privileges (default role)

  • analyst: Malware Analyst

  • auditor: Audit log access

  • api_analyst: Analyst limited to Web services APIs

  • api_monitor: Monitor limited to Web services APIs

Example

The following command changes the default role for new users to operator.

hostname (config) # aaa authorization roles default operator

User role

Admin

Supported appliances

This command is supported on the following appliances running the specified releases or later:

  • Malware Analysis: Before Release 6.4

  • Central Management System: Before Release 6.4

  • Email Security — Server: Before Release 6.4

  • File Protect: Before Release 6.4

  • Network Security: Before Release 6.4

  • Intelligent Virtual Execution - Server: Release 7.9