6-1
6
RADIUS Authentication, Authorization, and
Accounting
Overview
RADIUS (
Remote Authentication Dial-In User Service
) enables you to use
up to fifteen servers and maintain separate authentication and accounting for
each RADIUS server employed. For authentication, this allows a different
password for each user instead of having to rely on maintaining and distrib-
uting switch-specific passwords to all users. For accounting, this can help you
track network resource usage.
Authentication Services
You can use RADIUS to verify user identity for the following types of primary
password access to the HP switch:
■
Serial port (Console)
■
Telnet
■
SSH
■
SFTP/SCP
■
Web Agent (8212zl, 5400zl, 4200vl, 2800s as of software version I.08.60,
and 2600s as of software version H.08.58 switches)
■
Port-Access (802.1X)
Feature
Default
Menu
CLI
WebAgent
Configuring RADIUS Authentication
None
n/a
n/a
Configuring RADIUS Accounting
None
n/a
n/a
Configuring RADIUS Authorization
None
n/a
n/a
Viewing RADIUS Statistics
n/a
n/a
n/a
Summary of Contents for E3800 Series
Page 2: ......
Page 3: ...HP Networking E3800 Switches Access Security Guide September 2011 KA 15 03 ...
Page 30: ...xxviii ...
Page 86: ...2 36 Configuring Username and Password Security Password Recovery ...
Page 186: ...4 72 Web and MAC Authentication Client Status ...
Page 364: ...8 32 Configuring Secure Shell SSH Messages Related to SSH Operation ...
Page 510: ...10 130 IPv4 Access Control Lists ACLs General ACL Operating Notes ...
Page 548: ...11 38 Configuring Advanced Threat Protection Using the Instrumentation Monitor ...
Page 572: ...12 24 Traffic Security Filters and Monitors Configuring Traffic Security Filters ...
Page 730: ...20 Index ...
Page 731: ......