HP A5830 Series Configuration Manual page 59

Hide thumbs Also See for A5830 Series:
Table of Contents

Advertisement

Task...
3.
Enable the HTTPS
service.
4.
Associate
the
HTTPS service with
a
certificate
attribute-based
access
control
policy.
5.
Configure the port
number
of
the
HTTPS service.
6.
Associate
the
HTTPS service with
an ACL.
7.
Create a local user
and enter local user
view.
8.
Configure
a
password for the
local user.
9.
Specify
the
command level of
the local user.
Command...
ip https enable
ip https certificate
access-control-policy
policy-name
ip https port port-number
ip https acl acl-number
local-user user-name
password { cipher |
simple } password
authorization-attribute
level level
52
Remarks
Required.
Disabled by default.
Enabling the HTTPS service triggers an SSL handshake
negotiation process. During the process, if the local
certificate of the device exists, the SSL negotiation
succeeds, and the HTTPS service can be started
properly. If no local certificate exists, a certificate
application process is triggered by the SSL
negotiation. Because the application process takes
much time, the SSL negotiation often fails and the
HTTPS service cannot be started normally. In that
case, you must execute the ip https enable command
multiple times to start the HTTPS service.
Optional.
By default, the HTTPS service is not associated with
any certificate-based attribute access control policy.
Associating the HTTPS service with a certificate-
based attribute access control policy enables the
device to control the access rights of clients.
You must configure the client-verify enable
command in the associated SSL server policy. If it
is not, no clients can log in to the device.
The associated SSL server policy must contain at
least one permit rule. Otherwise, no clients can log
in to the device.
For more information about certificate attribute-
based access control policies, see Security
Configuration Guide.
Optional.
Port number is 443 by default.
Required.
By default, the HTTPS service is not associated with
any ACL.
Associating the HTTPS service with an ACL enables
the device to allow only clients permitted by the ACL
to access the device.
Required.
By default, no local user is configured.
Required.
By default, no password is configured for the local
user.
Required.
By default, no command level is configured for the
local user.

Advertisement

Table of Contents
loading

Table of Contents