Information
A role consists of rules that permit or deny access to a set of commands within specified command modes.
For local users a role limits the commands they can run to the appropriate set for their job.
Additional custom roles can be defined as needed or AAA services - such as TACACS+ - can be used to provide more granular access to the switch.
NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.
NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.
Solution
Assign roles to local users with the username command
username name [PRIVILEGE_LEVEL] SECURITY [ROLE_USER]
SECURITY specifies the password assignment.
Impact:
Incorrect assignment of roles can prevent users performing required functions or allow users to perform actions they should not.