Hi,
Its not working,
fisrt of all "deny-configuration" cant configured simultanios with "deny-configuration-regexps" it responce an error:
[edit system login class L2-CLASS]
'deny-configuration-regexps'
'deny-configuration' and 'deny-configuration-regexps' are mutually exclusive
error: commit failed: (statements constraint check failed)
Also i tryed to remove the "deny-configuration-regexps" configuration and also it dosent work with this conf:
set system login class L2-CLASS idle-timeout 30
set system login class L2-CLASS permissions control
set system login class L2-CLASS permissions firewall
set system login class L2-CLASS permissions interface-control
set system login class L2-CLASS permissions network
set system login class L2-CLASS permissions rollback
set system login class L2-CLASS permissions routing
set system login class L2-CLASS permissions view
set system login class L2-CLASS permissions view-configuration
set system login class L2-CLASS allow-commands "clear ethernet-switching table Vlan|clear ethernet-switching table mac|clear ethernet-switching bpdu-error|configure private|edit private|noop-command"
set system login class L2-CLASS deny-commands "(clear)|(file)|(help)|(load)|(op)|(request)|(save)|(set)|(start)|(test)"
set system login class L2-CLASS deny-configuration routing-options
set system login user L2 uid 2005
set system login user L2 class L2-CLASS
cant show the routing option:
test@test> show configuration ?
Possible completions:
<[Enter]> Execute this command
> access Network access configuration
> access-profile Access profile for this instance
> accounting-options Accounting data configuration
+ apply-groups Groups from which to inherit configuration data
> chassis Chassis configuration
> class-of-service Class-of-service configuration
> ethernet-switching-options Ethernet-switching configuration options
> firewall Define a firewall configuration
> forwarding-options Configure options to control packet forwarding
> groups Configuration groups
> interfaces Interface configuration
> multi-chassis
> policy-options Routing policy option configuration
> protocols Routing protocol configuration
> security Security configuration
> services System services
> snmp Simple Network Management Protocol configuration
> system System parameters
> virtual-chassis Virtual chassis configuration
> vlans VLAN configuration
| Pipe through a command