HPE FlexNetwork 7500 Series Security Configuration Manual page 34

Table of Contents

Advertisement

2.
Configure AAA methods for the users' ISP domains. Remote AAA methods need to use the
configured RADIUS, HWTACACS, and LDAP schemes.
Figure 12 AAA configuration procedure
Configure local users and related
Create an ISP domain
No AAA
and enter ISP domain
Configure the RADIUS, HWTACACS,
or LDAP schemes to be used
Remote AAA
To configure AAA, perform the following tasks:
Tasks at a glance
(Required.) Perform a minimum one of the following tasks to configure local users or AAA schemes:
Configuring local users
Configuring RADIUS schemes
Configuring HWTACACS schemes
Configuring LDAP schemes
(Required.) Configure AAA methods for ISP domains:
1.
(Required.)
Creating an ISP domain
2.
(Optional.)
Configuring ISP domain attributes
3.
(Required.) Perform a minimum one of the following tasks to configure AAA authentication,
authorization, and accounting methods for the ISP domain:
Configuring authentication methods for an ISP domain
Configuring authorization methods for an ISP domain
Configuring accounting methods for an ISP domain
(Optional.)
Configuring the RADIUS session-control feature
(Optional.)
Configuring the RADIUS DAS feature
(Optional.)
Changing the DSCP priority for RADIUS packets
(Optional.)
Configuring the RADIUS attribute translation feature
(Optional.)
Setting the maximum number of concurrent login users
(Optional.)
Configuring a NAS-ID profile
(Optional.)
Configuring the device ID
(Optional.)
Configuring the RADIUS server feature
Local AAA
Configure AAA methods for
different types of users or/and
the default methods for all
attributes
types of users
view
20
Authentication method
+
Authorization method
+
Accounting method
none/
local (the
default)/scheme
none/
local (the
default)/scheme
none/
local (the
default)/scheme

Advertisement

Table of Contents
loading

Table of Contents