HP PROCURVE 6208M-SX Installation And Getting Started Manual page 103

Hewlett-packard switch user manual
Hide thumbs Also See for PROCURVE 6208M-SX:
Table of Contents

Advertisement

Installation and Getting Started Guide
To configure an authentication-method list for the Web management interface, enter a command such as the
following:
HP9300(config)# aaa authentication web-server default local
This command configures the device to use the local user accounts to authenticate access to the device through
the Web management interface. If the device does not have a user account that matches the user name and
password entered by the user, the user is not granted access.
To configure an authentication-method list for the Privileged EXEC and CONFIG levels of the CLI, enter the
following command:
HP9300(config)# aaa authentication enable default local
This command configures the device to use the local user accounts to authenticate attempts to access the
Privileged EXEC and CONFIG levels of the CLI.
Example 2: To configure the device to consult a RADIUS server first to authenticate attempts to access the
Privileged EXEC and CONFIG levels of the CLI, then consult the local user accounts if the RADIUS server is
unavailable, enter the following command:
HP9300(config)# aaa authentication enable default radius local
Syntax: [no] aaa authentication snmp-server | web-server | enable | login default <method1> [<method2>]
[<method3>] [<method4>] [<method5>] [<method6>] [<method7>]
The snmp-server | web-server | enable | login parameter specifies the type of access this authentication­
method list controls. You can configure one authentication-method list for each type of access.
NOTE: TACACS/TACACS+ and RADIUS are supported only with the enable and login parameters.
The <method1> parameter specifies the primary authentication method. The remaining optional <method>
parameters specify additional methods to try if an error occurs with the primary method. A method can be one of
the values listed in the Method Parameter column in the following table.
Method Parameter
line
enable
local
tacacs
tacacs+
radius
3 - 46
Table 3.7: Authentication Method Values
Description
Authenticate using the password you configured for Telnet access. The
Telnet password is configured using the enable telnet password...
command.
Se
e "Setting a Telnet Password" on page 3-8.
Authenticate using the password you configured for the Super User
privilege level. This password is configured using the enable super­
user-password... command. See "Setting Passwords for Management
Privilege Levels" on page 3-9.
Authenticate using a local user name and password you configured on
the device. Local user names and passwords are configured using the
username... command. See "Configuring a Local User Account" on
page 3-11.
Authenticate using the database on a TACACS server. You also must
identify the server to the device using the tacacs-server command.
Authenticate using the database on a TACACS+ server. You also must
identify the server to the device using the tacacs-server command.
Authenticate using the database on a RADIUS server. You also must
identify the server to the device using the radius-server command.
See "Configuring RADIUS Security" on page 3-31.

Advertisement

Table of Contents
loading

This manual is also suitable for:

Procurve 1600m

Table of Contents