Authentication
Operating Notes
Operating Notes
■
If you configure Authorized IP Managers on the switch, it is not necessary
to include any devices used as servers in the authorized man
ager list. That is, authentication traffic between a server and
the switch is not subject to Authorized IP Manager controls configured
on the switch. Also, the switch does not attempt authentication
for a management station that the Authorized IP Manager list excludes
because, independent of , the switch already denies access to
such stations.
■
When is not enabled on the switch—or when the switch’s only
designated servers are not accessible— setting a local Operator
password without also setting a local Manager password does not protect
the switch from manager-level access by unauthorized persons.
■
When using the
copy
command to transfer a configuration to a TFTP
server, any optional, server-specific and global encryption keys (page 4
18) in the TACACS configuration will not be included in the transferred
file. Otherwise, a security breach could occur, allowing access to the
username/password information.
4-29
Summary of Contents for PROCURVE 2910AL
Page 1: ...Access Security Guide ProCurve Switches W 14 03 2910al www procurve com ...
Page 2: ......
Page 3: ...HP ProCurve 2910al Switch February 2009 W 14 03 Access Security Guide ...
Page 84: ...Configuring Username and Password Security Front Panel Security 2 36 ...
Page 156: ...TACACS Authentication Operating Notes 4 30 ...
Page 288: ...Configuring Secure Socket Layer SSL Common Errors in SSL setup 8 22 ...
Page 416: ...Configuring Advanced Threat Protection Using the Instrumentation Monitor 10 28 ...
Page 572: ...Using Authorized IP Managers Operating Notes 14 14 ...
Page 592: ...12 Index ...
Page 593: ......