Configuring Radius Schemes - HP 5920 Series Configuration Manual

Hide thumbs Also See for 5920 Series:
Table of Contents

Advertisement

Step
2.
Create a user group and
enter its view.
3.
Configure authorization
attributes for the user group.
4.
(Optional.) Configure
password control attributes
for the user group.
Displaying and maintaining local users and local user groups
Execute display commands in any view.
Task
Display the local user
configuration and online user
statistics.
Display the user group
configuration.

Configuring RADIUS schemes

A RADIUS scheme specifies the RADIUS servers that the device can cooperate with and defines a set of
parameters that the device uses to exchange information with the RADIUS servers, including the IP
addresses of the servers, UDP port numbers, shared keys, and server types.
Configuration task list
Tasks at a glance
(Required.)
(Required.)
(Optional.)
(Optional.)
(Optional.)
Command
user-group group-name
authorization-attribute { acl
acl-number | idle-cut minute | vlan
vlan-id | work-directory
directory-name } *
Command
display local-user [ class { manage | network } | idle-cut { disable | enable }
| service-type { ftp | lan-access | ssh | telnet | terminal } | state { active |
block } | user-name user-name | vlan vlan-id ]
display user-group [ group-name ]
Creating a RADIUS scheme
Specifying the RADIUS authentication servers
Specifying the RADIUS accounting servers and the relevant parameters
Specifying the shared keys for secure RADIUS communication
Specifying a VPN for the scheme
Set the password aging time:
password-control aging
aging-time
Set the minimum password length:
password-control length length
Configure the password
composition policy:
password-control composition
type-number type-number
[ type-length type-length ]
21
Remarks
By default, there is a system
predefined user group named
system, which is the default user
group.
By default, no authorization
attribute is configured for a user
group.
Optional.
By default, the user group uses
global settings, including a
90-day password aging time, a
minimum password length of 10
characters, and at least one
password composition type and
at least one character required
for each password composition
type. For more information about
password control commands, see
Security Command Reference.

Advertisement

Table of Contents
loading

This manual is also suitable for:

5900 series

Table of Contents