Displaying rules for predefined roles

  1. Run the show authorization command.

  2. Specify the group parameter.

In this example, the authorization is displayed for the predefined roles.

Displaying rules

# show authorization group

Local Management Groups - Authorization Information


  Group Name: Level-0
  Group Privilege Level: 18

  Users: Tom, Bill, Will

  Seq. Num.  | Permission Rule Expression                            Log
  ---------- + ---------- ------------------------------------------ -------
  999        | Permit     ping *                                     Disable
  1000       | Permit     ping6 *                                    Disable
  1001       | Permit     traceroute *                               Disable
  1002       | Permit     traceroute6 *                              Disable
  1003       | Permit     ssh *                                      Disable
  1004       | Permit     telnet *                                   Disable
  1005       | Permit     telnet-server *                            Disable
  1006       | Deny       .*                                         Disable

...

  Group Name: Level-15
  Group Privilege Level: 33

  Users
  ----------------

  Seq. Num.  | Permission Rule Expression                            Log
  ---------- + ---------- ------------------------------------------ -------
  999        | Permit     configure .*                               Disable
  1000       | Permit     .*                                         Disable