System Configuration
Quarantining, 802.1X
3-69
7.
Enter the
User name
with which to log into the device's console.
8.
Enter the
Password
with which to log into the device's console.
9.
Re-enter the console password.
10. Enter the password with which to enter enable mode.
11. Re-enter the enable mode password.
12. Enter the networks (using CIDR notation) that this device is in direct
control over in the
Network list
text field. This is only necessary if the
device does not send its IP address with its supplicant request.
13. Enter the
Cisco port mask
in the text field. This specifies which characters
within the endpoint identifier returned by the Cisco device contain the
bank and port information of the endpoint. All offsets start at 0, so a mask
of 2/34 indicates character 3 for the bank and characters 4 and 5 for the
port. If the Cisco device were to return 50210 for an endpoint, a port mask
of 2/34 would indicate that the endpoint is on bank 2 and port 10 (2/10),
where 210 are the third, fourth and fifth bytes in the identifier.
14. Enter the
Reconnect idle time
. This is the amount of time in milliseconds
that a Telnet/SSH console can remain idle or unused before it is reset.
15. Select the
Show scripts
plus symbol to show the following scripts:
•
Initialization script
– The expect script used to log into the console and
enter enable mode.
•
Re-authentication script
– The expect script used to perform endpoint
re-authentication.
•
Exit script
– The expect script used to exit the console.
16. Click
ok
.
TIP:
Click revert to defaults to restore the default settings.
CatOS User Name in Enable Mode
If you have your CatOS switch configured to run in enable mode with a user
name, the expect script supplied with NAC 800 will not run “out of the box.”
Workaround: Do not use a user name with your switch, or modify the expect
script in the console to include the user name.
To modify the expect script in the NAC 800 user interface:
Home window>>System configuration>>Quarantining menu option
Summary of Contents for 800 Series
Page 1: ...Users Guide www procurve com ProCurve Network Access Controller 800 ...
Page 2: ......
Page 3: ...ProCurve Network Access Controller 800 Release 1 1 Users Guide ...
Page 43: ...2 1 2 Clusters and Servers Chapter Contents Overview 2 2 Installation Examples 2 3 ...
Page 70: ...System Configuration Management Server 3 22 Figure 3 9 System Configuration Management Server ...
Page 79: ...System Configuration User Accounts 3 31 Figure 3 12 System Configuration User Accounts ...
Page 87: ...System Configuration User Roles 3 39 Figure 3 16 System Configuration User Roles ...
Page 206: ... This page intentionally left blank ...
Page 229: ...End user Access Mac OS X Endpoint Settings 5 23 Figure 5 8 Mac System Preferences ...
Page 262: ... This page intentionally left blank ...
Page 284: ... This page intentionally left blank ...
Page 298: ... This page intentionally left blank ...
Page 302: ...High Availability and Load Balancing High Availability 8 4 Figure 8 2 DHCP Installation ...
Page 303: ...High Availability and Load Balancing High Availability 8 5 Figure 8 3 802 1X Installation ...
Page 305: ...9 1 9 Inline Quarantine Method Chapter Contents Inline 9 2 ...
Page 308: ... This page intentionally left blank ...
Page 311: ...DHCP Quarantine Method Overview 10 3 Figure 10 1 DHCP Installation ...
Page 314: ... This page intentionally left blank ...
Page 319: ...802 1X Quarantine Method NAC 800 and 802 1X 11 5 Figure 11 2 NAC 800 802 1X Enforcement ...
Page 320: ...802 1X Quarantine Method NAC 800 and 802 1X 11 6 Figure 11 3 802 1X Communications ...
Page 376: ... This page intentionally left blank ...
Page 414: ... This page intentionally left blank ...
Page 421: ...Reports Viewing Report Details 14 7 Figure 14 3 Test Details Report ...
Page 474: ... This page intentionally left blank ...
Page 520: ...Tests Help Security Settings Windows B 34 http www pcworld com article id 112138 article html ...
Page 526: ... This page intentionally left blank ...
Page 556: ... This page intentionally left blank ...
Page 584: ... This page intentionally left blank ...
Page 585: ......