Authentication
Configuring on the Switch
To delete a per-server encryption key in the switch, re-enter the tacacs-server
host command without the key parameter. For example, if you have
north01
configured as the encryption key for a server with an IP address of
10.28.227.104 and you want to eliminate the key, you would use this command:
ProCurve
(config)# tacacs-server host 10.28.227.104
Note
You can save the encryption key in a configuration file by entering this
command:
Procurve(config)# tacacs-server key <keystring>
The <
keystring
> parameter is the encryption key in clear text.
Note
The
show tacacs
command lists the global encryption key, if configured.
However, to view any configured per-server encryption keys, you must use
show config
or
show config running
(if you have made configuration
changes without executing
write mem
).
Configuring the Timeout Period.
The timeout period specifies how long
the switch waits for a response to an authentication request from a
server before either sending a new request to the next server in the switch’s
Server IP Address list or using the local authentication option. For example,
to change the timeout period from 5 seconds (the default) to 3 seconds:
ProCurve
(config)# tacacs-server timeout 3
4-23
Summary of Contents for PROCURVE 2910AL
Page 1: ...Access Security Guide ProCurve Switches W 14 03 2910al www procurve com ...
Page 2: ......
Page 3: ...HP ProCurve 2910al Switch February 2009 W 14 03 Access Security Guide ...
Page 84: ...Configuring Username and Password Security Front Panel Security 2 36 ...
Page 156: ...TACACS Authentication Operating Notes 4 30 ...
Page 288: ...Configuring Secure Socket Layer SSL Common Errors in SSL setup 8 22 ...
Page 416: ...Configuring Advanced Threat Protection Using the Instrumentation Monitor 10 28 ...
Page 572: ...Using Authorized IP Managers Operating Notes 14 14 ...
Page 592: ...12 Index ...
Page 593: ......