
1-31
Overview of the ProCurve NAC 800
RADIUS Server
ProCurve NAC 800 RADIUS Capabilities
The ProCurve NAC 800 supports the following RADIUS capabilities:
■
Authenticating users against accounts stored in a variety of locations,
including:
•
Windows domain controllers (Active Directory [AD])
•
An OpenLDAP server
•
An eDirectory server
•
Another RADIUS server (proxying requests)
■
Authenticating users with a variety of protocols, including:
•
Extensible Authentication Protocol (EAP):
–
Protected EAP (PEAP) with Microsoft CHAP version 2
(MS-CHAPv2)
–
Transport Layer Security (TLS)
–
Tunneled TLS (TTLS) with Message Digest 5 (MD5)
–
Generic Token Card (GTC)
–
Lightweight EAP (LEAP)
■
Granting users rights, as follows:
•
Assigning users to a VLAN based on their endpoint integrity posture
■
Logging activity
The NAC 800 logs RADIUS events to this file:
/var/log/radius/radius.log
.
By default, the file stores a week’s worth of logs. Every month, the NAC
creates a new log file, and it saves up to four files.
RADIUS logs include:
•
Failed authentication attempts
•
Successful authentication attempts
•
Authentication requests from unknown NASs
■
Accounting
The NAC 800 can also act as a RADIUS accounting server. RADIUS
accounting reports are logged as files in this directory:
/var/log/radius/
radacct
.
Содержание 800
Страница 1: ...Configuration Guide www procurve com ProCurve Network Access Controller 800 ...
Страница 2: ......
Страница 3: ...ProCurve Network Access Controller 800 Configuration Guide April 2008 1 0 30398 ...
Страница 74: ...1 62 Overview of the ProCurve NAC 800 Deployment Methods ...
Страница 145: ...3 17 Initial Setup of the ProCurve NAC 800 System Settings Figure 3 9 Home System Configuration Management Server ...
Страница 155: ...3 27 Initial Setup of the ProCurve NAC 800 System Settings ...
Страница 194: ...3 66 Initial Setup of the ProCurve NAC 800 Digital Certificates ...
Страница 328: ...5 64 Configuring the RADIUS Server Without Identity Driven Manager Manage Digital Certificates for RADIUS ...
Страница 336: ...6 8 Disabling Endpoint Integrity Testing Overview ...
Страница 354: ...7 18 Redundancy and Backup for RADIUS Services Back Up Your NAC 800 Configuration ...
Страница 380: ...A 26 Appendix A Glossary ...
Страница 394: ...B 14 Appendix B Linux Commands Service Commands ...
Страница 405: ......
Страница 406: ... Copyright 2007 2008 Hewlett Packard Development Company L P April 2008 Manual Part Number 5991 8618 ...