6-6
RADIUS Authentication, Authorization, and Accounting
General RADIUS Setup Procedure
General RADIUS Setup Procedure
Preparation:
1.
Configure one to fifteen RADIUS servers to support the switch. Refer to
the documentation provided with the RADIUS server application.
2.
Before configuring the switch, collect the information outlined below.
Table 6-1.
Preparation for Configuring RADIUS on the Switch
• Determine the access methods (console, Telnet, Port-Access (802.1X), WebAgent and/or SSH) for which you want
RADIUS as the primary authentication method. Consider both Operator (login) and Manager (enable) levels, as well
as which secondary authentication methods to use (local or none) if the RADIUS authentication fails or does not
respond.
Figure 6-1. Example of Possible RADIUS Access Assignments
HP Switch(config)# show authentication
Status and Counters - Authentication Information
Login Attempts : 3
Respect Privilege : Disabled
| Login Login Login
Access Task | Primary Server Group Secondary
----------- + ---------- ------------ ----------
Console | Local Local
Telnet | Local None
Port-Access | Local None
Webui | Local None
SSH | Local None
Web-Auth | ChapRadius radius None
MAC-Auth | ChapRadius radius None
SNMP | Local None
| Enable Enable Enable
Access Task | Primary Server Group Secondary
----------- + ---------- ------------ ----------
Console | Local None
Telnet | Local None
Webui | Local None
SSH | Local None
Console access requires
Local as secondary
method to prevent lockout
if the primary RADIUS
access fails due to loss of
RADIUS server access or
other problems with the
server.
Note:
The
WebAgent
access task shown in this
figure is available only on
the switches covered in
this guide.
Содержание HP ProCurve Series 6600
Страница 2: ......
Страница 6: ...iv ...
Страница 26: ...xxiv ...
Страница 102: ...2 48 Configuring Username and Password Security Password Recovery ...
Страница 204: ...4 72 Web and MAC Authentication Client Status ...
Страница 550: ...10 130 IPv4 Access Control Lists ACLs General ACL Operating Notes ...
Страница 612: ...12 24 Traffic Security Filters and Monitors Configuring Traffic Security Filters ...
Страница 734: ...14 44 Configuring and Monitoring Port Security Operating Notes for Port Security ...
Страница 756: ...16 8 Key Management System Configuring Key Chain Management ...
Страница 776: ...20 Index web server proxy 14 42 webagent access 6 6 wildcard See ACL wildcard See ACL ...
Страница 777: ......