HP 6125XLG R2306-HP 6125XLG Blade Switch Security Configuration Guide - Page 258

X EAP termination, 1X EAP relay

Page 258 highlights

802.1X packet format, 61 early notification of password expiration, 106 ECDSA entering peer public key, 119, 120 host public key display, 117 host public key export to file, 117 host public key save to file, 117 importing public key from file, 122 local host public key distribution, 117 local key pair creation, 116 local key pair destruction, 118 peer host public key import from file, 119 public key management, 115 public key peer configuration, 119 enabling 802.1X, 69 802.1X EAP relay, 69 802.1X EAP termination, 69 802.1X periodic online user re-authentication, 74 ACL checking for de-encapsulated IPsec packets, 212 ARP black hole routing, 172 invalid SPI recovery, 231 IPv4 source guard on interface, 162 IPv6 source guard on interface, 164 logging of IPsec packets, 214 MAC authentication, 79 password control, 108 port security, 90 QoS pre-classify (IPsec), 213 RADIUS session-control feature, 44 SFTP server function, 128 SSH server function, 128 encapsulating 802.1X RADIUS EAP-Message attribute, 62 encapsulation transport mode (IPsec), 199 tunnel mode (IPsec), 199 encryption algorithms (IPsec), 201 IPsec, 200 public key, 115 SSH configuration, 125 SSH server configuration, 127 entering FIPS mode (automatic reboot), 192, 195 FIPS mode (manual reboot), 192, 196 entering peer public key, 119, 120 establishing SFTP server connection, 135 Stelnet server connection, 133 Ethernet 802.1X overview, 59 expiration of password early notification, 106 exporting host public key to file, 117 F file host public key export to file, 117 importing public key from file, 122 peer host public key import from file, 119 SCP file transfer with password authentication, 158 SFTP, 137 filtering ARP packets, 183, 184 FIPS automatic reboot, 192 configuration changes, 193 configuration guidelines, 191 configuration restrictions, 191 configuring FIPS mode, 192 displaying, 195 entering FIPS mode, 192 entering FIPS mode (automatic reboot), 195 entering FIPS mode (manual reboot), 196 manual reboot, 192 self-test, 194 triggering self-test, 194 FIPS compliance AAA configuration, 17 password control, 108 public key management, 115 SSH configuration, 127, 202, 224 FIPS self-test conditional self-test, 194 power-up self-test, 194 triggered self-test, 194 249

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276

249
802.1X packet format,
61
early notification of password expiration,
106
ECDSA
entering peer public key,
119
,
120
host public key display,
117
host public key export to file,
117
host public key save to file,
117
importing public key from file,
122
local host public key distribution,
117
local key pair creation,
116
local key pair destruction,
118
peer host public key import from file,
119
public key management,
115
public key peer configuration,
119
enabling
802.1X,
69
802.1X EAP relay,
69
802.1X EAP termination,
69
802.1X periodic online user
re-authentication,
74
ACL checking for de-encapsulated IPsec
packets,
212
ARP black hole routing,
172
invalid SPI recovery,
231
IPv4 source guard on interface,
162
IPv6 source guard on interface,
164
logging of IPsec packets,
214
MAC authentication,
79
password control,
108
port security,
90
QoS pre-classify (IPsec),
213
RADIUS session-control feature,
44
SFTP server function,
128
SSH server function,
128
encapsulating
802.1X RADIUS EAP-Message attribute,
62
encapsulation
transport mode (IPsec),
199
tunnel mode (IPsec),
199
encryption
algorithms (IPsec),
201
IPsec,
200
public key,
115
SSH configuration,
125
SSH server configuration,
127
entering
FIPS mode (automatic reboot),
192
,
195
FIPS mode (manual reboot),
192
,
196
entering peer public key,
119
,
120
establishing
SFTP server connection,
135
Stelnet server connection,
133
Ethernet
802.1X overview,
59
expiration of password
early notification,
106
exporting
host public key to file,
117
F
file
host public key export to file,
117
importing public key from file,
122
peer host public key import from file,
119
SCP file transfer with password authentication,
158
SFTP,
137
filtering
ARP packets,
183
,
184
FIPS
automatic reboot,
192
configuration changes,
193
configuration guidelines,
191
configuration restrictions,
191
configuring FIPS mode,
192
displaying,
195
entering FIPS mode,
192
entering FIPS mode (automatic reboot),
195
entering FIPS mode (manual reboot),
196
manual reboot,
192
self-test,
194
triggering self-test,
194
FIPS compliance
AAA configuration,
17
password control,
108
public key management,
115
SSH configuration,
127
,
202
,
224
FIPS self-test
conditional self-test,
194
power-up self-test,
194
triggered self-test,
194