![HP HP ProCurve Series 6600 Access Security Manual Download Page 257](http://html.mh-extra.com/html/hp/hp-procurve-series-6600/hp-procurve-series-6600_access-security-manual_163101257.webp)
6-23
RADIUS Authentication, Authorization, and Accounting
Configuring the Switch for RADIUS Authentication
Using Multiple RADIUS Server Groups
The authentication and accounting features on the switch can use up to fifteen
RADIUS servers. This option allows the RADIUS servers to be put into groups.
Up to 5 groups of 3 RADIUS servers each can be configured. The authentica-
tion and accounting features can choose which RADIUS server group to
communicate with. End-user authentication methods (802.1X, MAC-based
and web-based) can authenticate with different RADIUS servers from the
management interface authentication methods (console, telnet, ssh, web).
Commands
Several commands are used to support the RADIUS server group option. The
RADIUS server must be configured before it can be added to a group. See
“Configuring the Switch for RADIUS Authentication” on page 6-7 for more
information about configuring RADIUS servers.
Figure 6-8. Example of RADIUS Server Group Command Output
HP Switch
(config)# radius-server host 10.33.18.151 acct-port 1750 key
source0151
HP Switch
(config)# write mem
HP Switch
(config)# show radius
Status and Counters - General RADIUS Information
Deadtime(min) : 0
Timeout(secs) : 5
Retransmit Attempts : 3
Global Encryption Key :
Dynamic Authorization UDP Port : 3799
Auth Acct DM/ Time
Server IP Addr Port Port CoA Window Encryption Key OOBM
--------------- ---- ---- --- ------ -------------------------------- -----
10.33.18.151 1812 1750 No 10 source0151 No
Because the radius-server command includes an
acct-port
keyword with a non-default UDP port
number of 1750, the switch assigns this value as the
UDP accounting port.
Syntax:
[no] radius-server host <
ip-address
>
Adds a server to the RADIUS configuration or (with
no
) deletes
a server from the configuration. You can configure up to
fifteen RADIUS server addresses. The switch uses the first
server it successfully accesses.
Summary of Contents for HP ProCurve Series 6600
Page 2: ......
Page 6: ...iv ...
Page 26: ...xxiv ...
Page 102: ...2 48 Configuring Username and Password Security Password Recovery ...
Page 204: ...4 72 Web and MAC Authentication Client Status ...
Page 550: ...10 130 IPv4 Access Control Lists ACLs General ACL Operating Notes ...
Page 612: ...12 24 Traffic Security Filters and Monitors Configuring Traffic Security Filters ...
Page 734: ...14 44 Configuring and Monitoring Port Security Operating Notes for Port Security ...
Page 756: ...16 8 Key Management System Configuring Key Chain Management ...
Page 776: ...20 Index web server proxy 14 42 webagent access 6 6 wildcard See ACL wildcard See ACL ...
Page 777: ......