JunOS device config:
system {
login {
class read-config {
full-name "For config backup";
permissions view-configuration;
allow-commands "(show)|(set cli screen-length)|(set cli screen-width)";
deny-commands "(clear)|(file)|(file show)|(help)|(load)|(monitor)|(op)|(request)|(save)|(set)|(start)|(test)";
deny-configuration all;
}
user _NetEng {
class super-user;
}
user _NocTech {
class operator;
}
user remote {
full-name "Default user class for remote auth users";
class read-only;
}
authentication-order [ radius password ];
radius-server {
192.168.1.101 {
routing-instance mgmt_junos;
port 1812;
accounting-port 1813;
secret "****"; ## SECRET-DATA
timeout 3;
retry 2;
source-address <device-mgmt-ip>;
}
}
}