HP 6125G HP 6125G & 6125G/XG Blade Switches Security Configuration Gui - Page 24

AAA configuration considerations and task list

Page 24 highlights

No. Sub-attribute 206 Output-Interval-Gigawords 207 Backup-NAS-IP 255 Product_ID Description Result of bytes output within an accounting interval divided by 4G bytes. Backup source IP address for sending RADIUS packets. Product name. AAA configuration considerations and task list To configure AAA, you must complete these tasks on the NAS: 1. Configure the required AAA schemes. { Local authentication-Configure local users and the related attributes, including the usernames and passwords of the users to be authenticated. { Remote authentication-Configure the required RADIUS and HWTACACS schemes. You must configure user attributes on the servers accordingly. 2. Configure AAA methods for the users' ISP domains. { Authentication method-No authentication (none), local authentication (local), or remote authentication (scheme) { Authorization method-No authorization (none), local authorization (local), or remote authorization (scheme) { Accounting method-No accounting (none), local accounting (local), or remote accounting (scheme) Figure 9 AAA configuration diagram Local AAA Configure local users and related attributes No AAA Create an ISP domain and enter its view Configure the RADIUS and HWTACACS schemes Remote AAA Configure AAA methods Authentication method + Authorization method + Accounting method None local (the default) scheme None local (the default) scheme None local (the default) scheme Table 4 AAA configuration task list Task Configuring AAA Configuring local users Remarks Required. 14

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285

14
No.
Sub-attribute
Description
206
Output-Interval-Gigawords
Result of bytes output within an accounting interval divided by 4G bytes.
207
Backup-NAS-IP
Backup source IP address for sending RADIUS packets.
255
Product_ID
Product name.
AAA configuration considerations and task list
To configure AAA, you must complete these tasks on the NAS:
1.
Configure the required AAA schemes.
{
Local authentication
—Configure local users and the related attributes, including the usernames
and passwords of the users to be authenticated.
{
Remote authentication
—Configure the required RADIUS and HWTACACS schemes. You must
configure user attributes on the servers accordingly.
2.
Configure AAA methods for the users’ ISP domains.
{
Authentication method
—No authentication (
none
), local authentication (
local
), or remote
authentication (
scheme
)
{
Authorization method
—No authorization (
none
), local authorization (
local
), or remote
authorization (
scheme
)
{
Accounting method
—No accounting (
none
), local accounting (
local
), or remote accounting
(
scheme
)
Figure 9
AAA configuration diagram
Table 4
AAA configuration task list
Task
Remarks
Configuring AAA
Configuring local users
Required.
Configure the RADIUS and
HWTACACS schemes
Authorization method
Accounting method
Configure AAA methods
Create an ISP domain
and enter its view
local
(the default)
None
scheme
Authentication method
Configure local users and related
attributes
+
+
Local AAA
Remote AAA
No AAA
local
(the default)
None
scheme
local
(the default)
None
scheme