
4-6
Configuring the RADIUS Server—Integrated with ProCurve Identity Driven Manager
Overview
In addition, IDM provides these services for NAC 800s:
■
A tool for adding user accounts to the NAC 800’s local database
■
Access to the NAC 800’s Web browser interface
■
Profiles for authenticated users based on their endpoint integrity posture
(pass, fail, infected, or unknown)
For more information on IDM and how it interacts with the NAC 800, see “IDM”
on page 2-50 of Chapter 2: “Management Options for the ProCurve NAC 800.”
N o t e
To function with the NAC 800, IDM’s version number must be 2.2 auto-update
2. The NAC 800’s IDM agent version must match the IDM version.
The NAC 800 includes the IDM agent at its factory default settings; you do
not
need to install it. If the IDM agent is upgraded, the release notes will instruct
you how to upgrade the agent on the NAC 800.
To check the current IDM agent version, log in to the NAC 800 as root and
enter:
more /root/version
Data Store Overview
The NAC 800 can search one of several locations, or data stores, for a user’s
credentials:
■
A local database of users
■
A Windows domain controller, which runs Active Directory (AD)
■
A Lightweight Directory Access Protocol (LDAP) server:
•
OpenLDAP
•
Novell eDirectory
■
Another RADIUS server (via a proxy request)
You choose the data store when you configure the NAC 800’s (or cluster’s)
end-user authentication method. (See “Configure Authentication Settings” on
page 4-14.)
Содержание 800
Страница 1: ...Configuration Guide www procurve com ProCurve Network Access Controller 800 ...
Страница 2: ......
Страница 3: ...ProCurve Network Access Controller 800 Configuration Guide April 2008 1 0 30398 ...
Страница 74: ...1 62 Overview of the ProCurve NAC 800 Deployment Methods ...
Страница 145: ...3 17 Initial Setup of the ProCurve NAC 800 System Settings Figure 3 9 Home System Configuration Management Server ...
Страница 155: ...3 27 Initial Setup of the ProCurve NAC 800 System Settings ...
Страница 194: ...3 66 Initial Setup of the ProCurve NAC 800 Digital Certificates ...
Страница 328: ...5 64 Configuring the RADIUS Server Without Identity Driven Manager Manage Digital Certificates for RADIUS ...
Страница 336: ...6 8 Disabling Endpoint Integrity Testing Overview ...
Страница 354: ...7 18 Redundancy and Backup for RADIUS Services Back Up Your NAC 800 Configuration ...
Страница 380: ...A 26 Appendix A Glossary ...
Страница 394: ...B 14 Appendix B Linux Commands Service Commands ...
Страница 405: ......
Страница 406: ... Copyright 2007 2008 Hewlett Packard Development Company L P April 2008 Manual Part Number 5991 8618 ...