HP 5120 SI Series Security Configuration Manual page 44

Hide thumbs Also See for 5120 SI Series:
Table of Contents

Advertisement

To do...
Create an HWTACACS scheme
and enter HWTACACS scheme
view
NOTE:
Up to 16 HWTACACS schemes can be configured.
A scheme can be deleted only when it is not referenced.
Specifying the HWTACACS authentication servers
Follow these steps to specify the HWTACACS authentication servers:
To do...
Enter system view
Enter HWTACACS scheme
view
Specify the primary
HWTACACS authentication
server
Specify the secondary
HWTACACS authentication
server
NOTE:
If both the primary and secondary authentication servers are specified, the secondary one is used when
the primary one is not reachable.
If redundancy is not required, specify only the primary HWTACACS authentication server.
The IP addresses of the primary and secondary authentication servers cannot be the same. Otherwise,
the configuration fails.
You can remove an authentication server only when no active TCP connection for sending authentication
packets is using it.
Specifying the HWTACACS authorization servers
Follow these steps to specify the HWTACACS authorization servers:
To do...
Enter system view
Enter HWTACACS scheme
view
Specify the primary
HWTACACS authorization
server
Use the command...
hwtacacs scheme
hwtacacs-scheme-name
Use the command...
system-view
hwtacacs scheme hwtacacs-scheme-name
primary authentication ip-address
[ port-number | key [ cipher | simple ]
key ] *
secondary authentication ip-address
[ port-number | key [ cipher | simple ]
key ] *
Use the command...
system-view
hwtacacs scheme
hwtacacs-scheme-name
primary authorization ip-address
[ port-number | key [ cipher | simple ]
key ] *
32
Remarks
Required
Not defined by default
Remarks
Required
Configure at least one
command.
No authentication server is
specified by default.
Remarks
Required
Configure at least one command.

Advertisement

Table of Contents
loading

Table of Contents