Setting The Switch Authentication Mode; Fabric Os User Accounts - HP StoreFabric SN6500B Administrator's Manual

Fabric os administrator's guide, 7.1.0 (53-1002745-02, march 2013)
Hide thumbs Also See for StoreFabric SN6500B:
Table of Contents

Advertisement

5
Remote authentication
TABLE 17
aaaConfig options
--authspec "ldap; local"
--authspec "ldap; local" --backup
--authspec "tacacs+"
--authspec "tacacs+; local"
--authspec "tacacs+; local" --backup
--authspec -nologout
1.

Setting the switch authentication mode

1. Connect to the switch and log in using an account with admin permissions.
2. Enter the aaaConfig --authspec command.

Fabric OS user accounts

RADIUS, LDAP, and TACACS+ servers allow you to set up user accounts by their true network-wide
identity rather than by the account names created on a Fabric OS switch. With each account name,
assign the appropriate switch access permissions. For LDAP servers, you can use the
ldapCfg
152
Authentication configuration options (Continued)
Fabric OS v5.1.0 and earlier aaaConfig --switchdb <on | off> setting.
maprole ldap_role name switch_role command to map LDAP server permissions.
-–
Description
Authenticates management connections
against any LDAP databases first. If LDAP fails
for any reason, it then authenticates against
the local user database.
Authenticates management connections
against any LDAP databases first. If LDAP fails
for any reason, it then authenticates against
the local user database. The --backup option
states to try the secondary authentication
database only if the primary authentication
database is not available.
Authenticates management connections
against any TACACS+ databases only. If
TACACS+ service is not available or the
credentials do not match, the login fails.
Authenticates management connections
against any TACACS+ databases first. If
TACACS+ fails for any reason, it then
authenticates against the local user database.
Authenticates management connections
against any TACACS+ databases first. If
TACACS+ fails for any reason, it then
authenticates against the local user database.
The --backup option states to try the
secondary authentication database only if the
primary authentication database is not
available.
Prevents users from being logged out when
you change authentication. Default behavior is
to log users out when you change
authentication.
Equivalent setting in
Fabric OS v5.1.0 and
earlier
1
--radius
--switchdb
n/a
On
n/a
On
not
not
supported
supported
not
not
supported
supported
not
not
supported
supported
n/a
n/a
Fabric OS Administrator's Guide
53-1002745-02

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Fabric os 7.1.0

Table of Contents