4-23
Authentication
Configuring on the Switch
To delete a per-server encryption key in the switch, re-enter the tacacs-server
host command without the key parameter. For example, if you have
north01
configured as the encryption key for a server with an IP address of
10.28.227.104 and you want to eliminate the key, you would use this command:
ProCurve(config)# tacacs-server host 10.28.227.104
N o t e
The show tacacs command lists the global encryption key, if configured.
However, to view any configured per-server encryption keys, you must use
show config
or
show config running
(if you have made configuration
changes without executing
write mem
).
Configuring the Timeout Period.
The timeout period specifies how long
the switch waits for a response to an authentication request from a
server before either sending a new request to the next server in the switch’s
Server IP Address list or using the local authentication option. For example,
to change the timeout period from 5 seconds (the default) to 3 seconds:
ProCurve(config)# tacacs-server timeout 3
How Authentication Operates
General Authentication Process Using a
Server
Authentication through a server operates generally as described
below. For specific operating details, refer to the documentation you received
with your server application.
ProCurve Switch
Configured for
Operation
First-Choice
Server
B
ProCurve Switch
Configured for
Operation
Terminal “
A
” Directly Accessing This
Switch Via Switch’s Console Port
Terminal “
B
” Remotely
Accessing This Switch Via Telnet
A
Second-Choice
Server
(Optional)
Third-Choice
Server
(Optional)
Содержание ProCurve 2510-24
Страница 1: ...Access Security Guide 2510 www procurve com ProCurve Switches Q 11 XX 2510 24 U 11 XX 2510 48 ...
Страница 2: ......
Страница 3: ...ProCurve Series 2510 Switches Access Security Guide July 2008 ...
Страница 26: ...1 10 Getting Started Need Only a Quick Start ...
Страница 104: ...4 30 TACACS Authentication Configuring TACACS on the Switch ...
Страница 144: ...5 40 RADIUS Authentication Authorization and Accounting Messages Related to RADIUS Operation ...
Страница 174: ...6 30 Configuring Secure Shell SSH Messages Related to SSH Operation ...
Страница 196: ...7 22 Configuring Secure Socket Layer SSL Common Errors in SSL Setup ...
Страница 294: ...9 40 Configuring and Monitoring Port Security Configuring Protected Ports ...
Страница 308: ...10 14 Using Authorized IP Managers Operating Notes ...
Страница 316: ...8 Index ...
Страница 317: ......