4-49
Web and MAC Authentication
Configuring MAC Authentication on the Switch
Configuration Commands for MAC Authentication
Configuring the Global MAC Authentication Password
MAC authentication only requires that an entry is placed in the user database
with the device’s MAC address as both the username and the password,
creating the opportunity for malicious device spoofing using the readily
available MAC address. To make spoofing more difficult, the global password
option allows a network administrator to configure a common MAC authen-
tication password that is used for all MAC authentications sent to the RADIUS
server.
When implementing the global MAC authentication password option, it is
important that the user database on the RADIUS server has the MAC authen-
tication password as the password for each device performing MAC authen-
tication.
Use this command to configure the global MAC authentication password.
Command
Page
Configuration Level
aaa port-access mac-based addr-format
[no] aaa port-access mac-based password <password-value>
below
[no] aaa port-access mac-based [e] <
port-list
>
[addr-limit]
[addr-moves]
[auth-vid]
[logoff-period]
[max-requests]
[quiet-period]
[reauth-period]
[reauthenticate]
[server-timeout]
[unauth-vid]
Syntax:
[no] aaa port-access mac-based password <
password-value
>
Specifies the global password to be used by all MAC
authenticating devices.
The
no
form of the command disables the feature.
Summary of Contents for HP ProCurve Series 6600
Page 2: ......
Page 6: ...iv ...
Page 26: ...xxiv ...
Page 102: ...2 48 Configuring Username and Password Security Password Recovery ...
Page 204: ...4 72 Web and MAC Authentication Client Status ...
Page 550: ...10 130 IPv4 Access Control Lists ACLs General ACL Operating Notes ...
Page 612: ...12 24 Traffic Security Filters and Monitors Configuring Traffic Security Filters ...
Page 734: ...14 44 Configuring and Monitoring Port Security Operating Notes for Port Security ...
Page 756: ...16 8 Key Management System Configuring Key Chain Management ...
Page 776: ...20 Index web server proxy 14 42 webagent access 6 6 wildcard See ACL wildcard See ACL ...
Page 777: ......