6-23
RADIUS Authentication, Authorization, and Accounting
Configuring the Switch for RADIUS Authentication
[ local | none | authorized ]:
Provides options for
secondary authentication (default:
none
). Note
that for console access, secondary authentication
must be
local
if primary access is not
local
. This
prevents you from being locked out of the switch
in the event of a failure in other access methods.
Syntax:
aaa authentication <port-access <local |eap-radius | chap-radius> |
<mac-based | web-based <chap-radius | peap-mschapv2> [none |
authorized | server-group <
group-name
>] >>
Configures the primary authentication method for port-
access, MAC-based, or web-based access.
mac-based | web-based <chap-radius | peap-mschapv2
>: Pass-
word authentication for web-based or MAC-based port access
to the switch. Use
peap-mschapv2
when you want password
verification without requiring access to a plain text pass-
word; it is more secure. Default:
chap-radius
port-access <local | eap-radius | chap-radius
>: Configures
local
,
chap-radius (
MD5
)
, or
eap-radius
as the primary password
authentication method for port-access. The default primary
authentication is
local
. (Refer to the documentation for your
RADIUS server application.)
[
none | authorized | server-group <group-name
>
]
:
none
: No backup authentication method is used.
authorized
: Allow access without authentication
server-group <group-name>
: Specifies the server
group to use with RADIUS.
Syntax:
aaa accounting <exec | network | system | commands | <start-stop | stop-
only> radius [server-group <
group-name
>]
Configures accounting type and how data will be sent to the
RADIUS server.
radius
: Uses RADIUS protocol as accounting method.
server-group <group-name>
: Specifies the server group to
use with RADIUS.
Содержание E3800 Series
Страница 1: ...HP Switch Software E3800 switches Software version KA 15 03 September 2011 Access Security Guide ...
Страница 2: ......
Страница 3: ...HP Networking E3800 Switches Access Security Guide September 2011 KA 15 03 ...
Страница 30: ...xxviii ...
Страница 86: ...2 36 Configuring Username and Password Security Password Recovery ...
Страница 186: ...4 72 Web and MAC Authentication Client Status ...
Страница 290: ...6 74 RADIUS Authentication Authorization and Accounting Dynamic Removal of Authentication Limits ...
Страница 364: ...8 32 Configuring Secure Shell SSH Messages Related to SSH Operation ...
Страница 510: ...10 130 IPv4 Access Control Lists ACLs General ACL Operating Notes ...
Страница 548: ...11 38 Configuring Advanced Threat Protection Using the Instrumentation Monitor ...
Страница 572: ...12 24 Traffic Security Filters and Monitors Configuring Traffic Security Filters ...
Страница 659: ...14 11 Configuring and Monitoring Port Security Port Security Figure 14 5 Examples of Show Mac Address Outputs ...
Страница 730: ...20 Index ...
Страница 731: ......