5-23
Authentication
Configuring on the Switch
To delete a per-server encryption key in the switch, re-enter the tacacs-server
host command without the key parameter. For example, if you have
north01
configured as the encryption key for a server with an IP address of
10.28.227.104 and you want to eliminate the key, you would use this command:
HP Switch(config)# tacacs-server host 10.28.227.104
N o t e
You can save the encryption key in a configuration file by entering this
command:
HP Switch
(config)# tacacs-server key <keystring>
The <
keystring
> parameter is the encryption key in clear text.
N o t e
The
show tacacs
command lists the global encryption key, if configured.
However, to view any configured per-server encryption keys, you must use
show config
or
show config running
(if you have made configuration
changes without executing
write mem
).
Configuring the Timeout Period.
The timeout period specifies how long
the switch waits for a response to an authentication request from a
server before either sending a new request to the next server in the switch’s
Server IP Address list or using the local authentication option. For example,
to change the timeout period from 5 seconds (the default) to 3 seconds:
HP Switch(config)# tacacs-server timeout 3
Содержание HP ProCurve Series 6600
Страница 2: ......
Страница 6: ...iv ...
Страница 26: ...xxiv ...
Страница 102: ...2 48 Configuring Username and Password Security Password Recovery ...
Страница 204: ...4 72 Web and MAC Authentication Client Status ...
Страница 550: ...10 130 IPv4 Access Control Lists ACLs General ACL Operating Notes ...
Страница 612: ...12 24 Traffic Security Filters and Monitors Configuring Traffic Security Filters ...
Страница 734: ...14 44 Configuring and Monitoring Port Security Operating Notes for Port Security ...
Страница 756: ...16 8 Key Management System Configuring Key Chain Management ...
Страница 776: ...20 Index web server proxy 14 42 webagent access 6 6 wildcard See ACL wildcard See ACL ...
Страница 777: ......