ONTAP Discussions

How to enable a non root user ?

netappwala
2,957 Views

Hi,

 

I have created a read only user.

 

1.) created role

 

2.) creatd group adn role added to the group

 

3.) created user and added user to the group

 

but the user status is "expired" . How to enable the user?

 

# useradmin user list -x automonitor


Name: automonitor
Info:
Rid: 131078
Groups: only_monitor
Full Name:
Allowed Capabilities: api-aggr-list-*,api-disk-list-*,api-fcp-adapter-list-info,api-file-read-file,api-fcp-service-status,api-ipspace-list-info,api-iscsi-service-status,api-license-list-info,api-lun-list-info,api-nfs-exportfs-list-rules,api-nfs-status,api-perf-object-counter-list-*,api-perf-object-get*,api-perf-object-instance-list-*,api-perf-object-list-*,api-quota-get-entry,api-quota-report-iter-end,api-quota-report-iter-next,api-quota-report-iter-start,api-snapshot-delta-info,api-snapshot-get-schedule,api-snapshot-list-*,api-snapshot-reserve-list-*,api-snapshot-autodelete-list-*,api-snmp-get-next,api-vfiler-get-*,api-vfiler-list-*,api-volume-list-*,api-useradmin-domainuser-list,api-system-available-replication-transfers,api-cifs-list-config,cli-vol,api-lun-config-check-cfmode-info,cli-registry,api-aggr-check-spare-low,api-cifs-homedir-paths-get,api-cifs-top-iter-*,api-cifs-session-list-iter-*,api-cifs-share-list-iter-*,api-cifs-status,api-disk-sanown-list-info,api-file-get-file-info,api-file-list-directory-iter-*,api-igroup-list-info,api-iscsi-initiator-auth-list-info,api-iscsi-initiator-get-default-auth,api-iscsi-interface-list-info,api-iscsi-node-get-name,api-iscsi-portal-list-info,api-iscsi-target-alias-get-alias,api-iscsi-tpgroup-list-info,api-lun-get-comment,api-lun-initiator-list-map-info,api-lun-map-list-info,api-nfs-exportfs-list-rules-2,api-options-get,api-options-list-info,api-options-set,api-qtree-list-iter-*,api-registry-get,api-registry-list-info,api-snapmirror-get-status,api-snapmirror-list-connections,api-snapmirror-list-schedule,api-snmp-get,api-snmp-status,api-system-cli,api-system-get-*,api-useradmin-group-list,api-useradmin-role-list,api-useradmin-user-list,api-volume-autosize-get,api-volume-get-language,api-volume-get-root-name,api-volume-options-list-info,cli-cifs,cli-date,cli-ifconfig,cli-priv,cli-stty,cli-timezone,cli-uptime,login-http-admin,security-priv-advanced,api-cf-status,api-net-config-get*,cli-options,cli-vfiler,api-storage-disk-get*,api-clock-get*,api-diagnosis-config-get*,api-diagnosis-alert-get*,api-sis-status
Password min/max age in days: 365/2000
Status: expired

 

 

How to enable it?

 

 

Thanks,

Kabir

 

 

1 ACCEPTED SOLUTION

Sahana
2,936 Views

Hi

 

Refer Netapp KB 2013761 

User account is set to expired when created

 

If this post resolved your issue, help others by selecting ACCEPT AS SOLUTION or adding a KUDO.

View solution in original post

3 REPLIES 3

Sahana
2,937 Views

Hi

 

Refer Netapp KB 2013761 

User account is set to expired when created

 

If this post resolved your issue, help others by selecting ACCEPT AS SOLUTION or adding a KUDO.

netappwala
2,919 Views

Hi,

 

Thanks for the information. I could add the user with status enabled.

 

but now the problem is that I am unable to login with the newly created user. Putty is throwning the error "server unexpctedly closed network connection".

 

any idea to solve this?

 

 

XXXXXXXXX> useradmin user list -x automonitor
Name: automonitor
Info:
Rid: 131080
Groups: only_monitor
Full Name:
Allowed Capabilities: api-aggr-list-*,api-disk-list-*,api-fcp-adapter-list-info,api-file-read-file,api-fcp-service-status,api-ipspace-list-info,api-iscsi-service-status,api-license-list-info,api-lun-list-info,api-nfs-exportfs-list-rules,api-nfs-status,api-perf-object-counter-list-*,api-perf-object-get*,api-perf-object-instance-list-*,api-perf-object-list-*,api-quota-get-entry,api-quota-report-iter-end,api-quota-report-iter-next,api-quota-report-iter-start,api-snapshot-delta-info,api-snapshot-get-schedule,api-snapshot-list-*,api-snapshot-reserve-list-*,api-snapshot-autodelete-list-*,api-snmp-get-next,api-vfiler-get-*,api-vfiler-list-*,api-volume-list-*,api-useradmin-domainuser-list,api-system-available-replication-transfers,api-cifs-list-config,cli-vol,api-lun-config-check-cfmode-info,cli-registry,api-aggr-check-spare-low,api-cifs-homedir-paths-get,api-cifs-top-iter-*,api-cifs-session-list-iter-*,api-cifs-share-list-iter-*,api-cifs-status,api-disk-sanown-list-info,api-file-get-file-info,api-file-list-directory-iter-*,api-igroup-list-info,api-iscsi-initiator-auth-list-info,api-iscsi-initiator-get-default-auth,api-iscsi-interface-list-info,api-iscsi-node-get-name,api-iscsi-portal-list-info,api-iscsi-target-alias-get-alias,api-iscsi-tpgroup-list-info,api-lun-get-comment,api-lun-initiator-list-map-info,api-lun-map-list-info,api-nfs-exportfs-list-rules-2,api-options-get,api-options-list-info,api-options-set,api-qtree-list-iter-*,api-registry-get,api-registry-list-info,api-snapmirror-get-status,api-snapmirror-list-connections,api-snapmirror-list-schedule,api-snmp-get,api-snmp-status,api-system-cli,api-system-get-*,api-useradmin-group-list,api-useradmin-role-list,api-useradmin-user-list,api-volume-autosize-get,api-volume-get-language,api-volume-get-root-name,api-volume-options-list-info,cli-cifs,cli-date,cli-ifconfig,cli-priv,cli-stty,cli-timezone,cli-uptime,login-http-admin,security-priv-advanced,api-cf-status,api-net-config-get*,cli-options,cli-vfiler,api-storage-disk-get*,api-clock-get*,api-diagnosis-config-get*,api-diagnosis-alert-get*,api-sis-status
Password min/max age in days: 0/4294967295
Status: enabled

 

 

Thanks,

Kabir

netappwala
2,902 Views

I could solve the issue.

 

"login-ssh" capability was missing for the role that I have created.

 

 

 

Thanks,

Kabir

Public