User Administration Profile
The User Administration profile card allows you to create and manage user profiles for local authentication type. Authentication identifies users, validates their credentials, and grants device access. Currently, HPE Aruba Networking Central supports password-based local authentication.
A password-based authentication identifies users, validates their credentials and is supported on SSH, Web, Telnet, and Console for users with admin, read only, or guest roles.
Creating a User Administration Profile
To create an User Administration profile, complete the following steps:
-
In the HPE Aruba Networking Central landing page, click the configuration
icon.
The Profiles tab is displayed. -
In the left navigation menu, select one of the following options:
-
Library—This is the default selection. If you create profiles in the Library, then you must assign scope and device functions to the profiles. For more information, see Assigning Scope to a User Administration Profile.
-
Global—If you create profiles at the Global level, then the profiles have Global scope assigned by default.
-
Site Collections—If you create profiles at the Site Collections level, then the profiles have site collection scope assigned by default.
-
Sites—If you create profiles at the Site level, then the profiles have site scope assigned by default.
-
Devices—If you create profiles at the Device level, then the profiles have device scope assigned by default.
-
Device Groups—If you create profiles at the Device Group level, then the profiles have device group scope assigned by default.
Note:- To create profiles at the Global level, select the device type from the Device Function drop-down list before step 4.
- To create profiles at the Site Collections, Sites, Devices, and Device Group level, complete the following steps before step 4:
- Select Site Collections, Sites, Devices, or Device Groups in the left navigation menu.
- Select a site collection, site, device, or device group from the list view depending on the level where you are creating the profile.
- Select the device type from the Device Function drop-down list.
-
-
On the System card, continue clicking the radio button until you locate User Administration option.
Alternatively, you can complete the following steps:-
On the System card, click Manage.
-
On the User Administration card, click Manage.
The User Administration list view is displayed.
-
-
Click Create Profile.
The Create Profile side panel is displayed.
-
Configure the following parameters:
-
Create as a local profile—Select this option if you want to configure this profile as local.
Note:The Create as a local profile option is available at the Global, Site Collections, Sites, Devices, and Device Groups levels; it is not available at the Library level.
-
Name—Enter the name of the user local administration profile.
-
Password—Enter a password for the user local administration profile.
-
Role—Select a role from the drop-down list with the following option:
-
Admin
-
Read only
-
Guest
-
-
AOS-CX specific parameter — Check the box to specify a parameter
-
User Group —Select a user group from the drop down menu:
-
administrators
-
auditors
-
operators
-
-
Enable Telnet— Check the box to enable telnet.
-
-
-
Click Create.
The newly created user local administration profile is displayed in the list view. -
To edit a profile, complete the following steps:
-
Click anywhere on the row of the profile in the list view.
The profile edit view is displayed in the side panel.
-
Edit the required parameters.
-
Click Update.
-
-
To delete a user administration profile, hover on the profile name, and click the delete
icon. -
To search for a profile, type the profile name in the search bar.
The search bar displays dynamic results as soon as you start typing.
Assigning Scope to a User Administration Profile
For profiles created under Library, you must assign a scope and device function to be able to use its features and functionality.
To assign scope to a profile, complete the following steps:
-
In the HPE Aruba Networking Central landing page, click the configuration
icon.
The Profiles tab is displayed. -
Ensure that the default option Library is selected in the left navigation menu.
-
On the System card, continue clicking the radio button until you locate User Administration option.
Alternatively, you can complete the following steps:
-
On the System card, click Manage.
-
On the User Administration card, click Manage.
The User Administration list view is displayed.
-
-
Hover on the profile to which you want to assign a scope and click the ellipsis
icon. -
Select Assign.
The Assign Profile side panel is displayed.
-
Select the device types from Device Function list.
-
To add a scope, click the Add
icon on the Scopes table. -
Select a scope from the following Scope Level options in the drop-down list.
-
Global—Selecting this option assigns the scope at the Global level.
-
Site Collections—Select the site collections from the Assign to Scope drop-down list.
-
Sites—Select the sites from the Assign to Scope drop-down list.
-
Devices—Select the devices from the Assign to Scope drop-down list.
-
Device Groups—Select the device groups from the Assign to Scope drop-down list.
-
-
Click Add.
The Scopes table displays the newly added scopes.
-
Click Assign.
The User Administration list displays the device functions and number of scopes assigned to the profile.
-
To unassign a scope from a profile, complete the following steps:
-
Hover on the profile name and click the ellipsis
icon. -
Select Unassign.
-
Select the required scope and click Unassign.
-
To customize the user administration profile list, click the Customize Columns icon
. For more information, see Customizing List.