Configuring Radius Schemes - HP 10500 Series Configuration Manual

Security configuration guide
Hide thumbs Also See for 10500 Series:
Table of Contents

Advertisement

Step
4.
Configure authorization
attributes for the user group.
Displaying and maintaining local users and local user groups
Task
Display local user
information. (In standalone
mode.)
Display local user
information. (In IRF mode.)
Display user group
configuration information.

Configuring RADIUS schemes

A RADIUS scheme specifies RADIUS servers that the device can cooperate with and defines a set of
parameters that the device uses to exchange information with the RADIUS servers. There can be
authentication/authorization servers and accounting servers, or primary servers and secondary servers.
The parameters include the server IP addresses, shared keys, and RADIUS server type.
RADIUS scheme configuration task list
Task
Creating a RADIUS scheme
Specifying the RADIUS authentication/authorization servers
Specifying the RADIUS accounting servers and the relevant parameters
Specifying the shared keys for secure RADIUS communication
Specifying a VPN for the scheme
Setting the username format and traffic statistics units
Setting the supported RADIUS server type
Setting the maximum number of RADIUS request transmission attempts
Setting the status of RADIUS servers
Specifying the source IP address for outgoing RADIUS packets
Setting RADIUS timers
Command
authorization-attribute { acl
acl-number | idle-cut minute | level
level | user-profile profile-name |
vlan vlan-id | work-directory
directory-name } *
Command
display local-user [ idle-cut { disable | enable } |
service-type { ftp | lan-access | portal | ssh | telnet |
terminal } | state { active | block } | user-name user-name |
vlan vlan-id ] [ slot slot-number ] [ | { begin | exclude |
include } regular-expression ]
display local-user [ idle-cut { disable | enable } |
service-type { ftp | lan-access | portal | ssh | telnet |
terminal }| state { active | block } | user-name user-name |
vlan vlan-id ] [ chassis chassis-number slot slot-number ] [ |
{ begin | exclude | include } regular-expression ]
display user-group [ group-name ] [ | { begin | exclude |
include } regular-expression ]
20
Remarks
Optional.
By default, no authorization
attribute is configured for a user
group.
Remarks
Available in any
view.
Available in any
view.
Available in any
view.
Remarks
Required.
Required.
Optional.
Optional.
Optional.
Optional.
Optional.
Optional.
Optional.
Optional.
Optional.

Advertisement

Table of Contents
loading

Table of Contents