350-601 · Question #305
Refer to the exhibit. A network engineer created a new role to be assigned to the SAN users. The requirement is for users to have these characteristics: • permitted to show access to the system…
The correct answer is C. MDS-B(config)# role name san-users. The question specifies creating a new custom role for SAN users with specific permissions (allow show system/SNMP/module/hardware, allow debug zone and fcping, deny show feature environment). The role must be created under the name 'san-users' as stated in the requirement…
Question
Refer to the exhibit. A network engineer created a new role to be assigned to the SAN users. The requirement is for users to have these characteristics:
- permitted to show access to the system, SNMP, module, and hardware information.
- permitted to run debug zone and exec fcping commands.
- restricted from accessing show feature environment command.
Which configuration set meets these requirements?
Options
- AMDS-B(config)# role name default-role
- BMDS-B(config)# role name default-role
- CMDS-B(config)# role name san-users
- DMDS-B(config)# role name san-users
How the community answered
(41 responses)- A5% (2)
- B7% (3)
- C71% (29)
- D17% (7)
Explanation
The question specifies creating a new custom role for SAN users with specific permissions (allow show system/SNMP/module/hardware, allow debug zone and fcping, deny show feature environment). The role must be created under the name 'san-users' as stated in the requirement. Options A and B use 'default-role', which is a built-in read-only role in Cisco MDS NX-OS that cannot be customized with the specific permit/deny rules described. Only options C and D use the correct role name 'san-users', and option C correctly defines the required rule set with the proper permit and deny entries matching the stated requirements.
Topics
Community Discussion
No community discussion yet for this question.