A-4
Appendix A: Glossary
agent testing
method
An endpoint integrity-testing method that employs the
NAC EI agent
, which is
installed once onto the endpoint and periodically updated. This method is
supported by Windows OS versions 98 and later and by Mac OSX 10.3.7 and
later. The agent can be used through a firewall.
See also
NAC EI agent
.
agentless test
method
A testing method that does not require that an agent be installed on the
endpoint
. Using the Windows
RPC
service, agentless testing allows the NAC
800 to begin testing, provide test results, and grant access to compliant
endpoints without any interaction from the user. Of the three testing methods,
agentless testing is the easiest to deploy, requiring less administrative effort
and no memory on the endpoint. However, you cannot use this test method
with legacy Windows operating systems (Windows 95, ME, and earlier) or non-
Windows endpoints. Agentless testing requires that file and print sharing be
enabled on the endpoint, that ports 137, 138, 139, and 445 be open on the
endpoint’s firewall, that the endpoint’s browser security settings allow Java
scripting, and that administrator credentials be known for the endpoint.
allow all
An
access mode
that permits all
endpoint
s to access the network regardless of
test results.
AP
Access Point
. A network component that receives and sends wireless LAN
signals to wireless network cards through its anntena(s). An AP is functionally
equivalent to a switch.
asymmetric
A type of encryption algorithm wherein one
key
is used to encrypt and a
different key is used to decrypt.
authentication
The process of confirming an
endpoint
’s or a end-user’s identity before granting
a network connection. Authentication can be implemented through the use of
passwords, keys, or digital
certificates
. A
RADIUS
or
server can handle
authentication for the entire network.
authentication
protocols
Protocols that allow the peers in a connection to verify each other’s identity.
In the
PPP
protocol suite, authentication protocols include
PAP
,
CHAP
, and
EAP
.
authentication
server
A server whose function it is to authenticate end-users and endpoints. In the
802.1X
framework, the component that decides whether to grant an end-user
access.
authenticator
The component of the
802.1X
framework that enforces
authentication
and
authorization
. When an
endpoint
connects to the authenticator, the authentica-
tor forces it to authenticate to the network. The authenticator passes the
endpoint’s
supplicant
messages to the
authentication server
and enforces the
decisions made by that server. These decisions include whether the endpoint
Содержание 800
Страница 1: ...Configuration Guide www procurve com ProCurve Network Access Controller 800 ...
Страница 2: ......
Страница 3: ...ProCurve Network Access Controller 800 Configuration Guide April 2008 1 0 30398 ...
Страница 74: ...1 62 Overview of the ProCurve NAC 800 Deployment Methods ...
Страница 145: ...3 17 Initial Setup of the ProCurve NAC 800 System Settings Figure 3 9 Home System Configuration Management Server ...
Страница 155: ...3 27 Initial Setup of the ProCurve NAC 800 System Settings ...
Страница 194: ...3 66 Initial Setup of the ProCurve NAC 800 Digital Certificates ...
Страница 328: ...5 64 Configuring the RADIUS Server Without Identity Driven Manager Manage Digital Certificates for RADIUS ...
Страница 336: ...6 8 Disabling Endpoint Integrity Testing Overview ...
Страница 354: ...7 18 Redundancy and Backup for RADIUS Services Back Up Your NAC 800 Configuration ...
Страница 380: ...A 26 Appendix A Glossary ...
Страница 394: ...B 14 Appendix B Linux Commands Service Commands ...
Страница 405: ......
Страница 406: ... Copyright 2007 2008 Hewlett Packard Development Company L P April 2008 Manual Part Number 5991 8618 ...