HP 10500 Series Configuration Manual page 348

Security configuration guide
Hide thumbs Also See for 10500 Series:
Table of Contents

Advertisement

enabling IPv6 ND attack defense source MAC
packet consistency check, 267
IP source guard configuration, 236, 243
IPv4 source guard configuration, 238
IPv4 source guard DHCP relay configuration, 246
IPv4 source guard DHCP snooping configuration,
245
IPv4 source guard entry configuration, 243
IPv6
source
guard
configuration, 247
IPv6 source guard configuration, 240
FIPS
conditional self-test, 295
configuration, 295, 296, 297
displaying, 297
enabling, 296
known-answer test, 295
power-up self-test, 295
self-tests, 295
triggering self-test, 295, 296
FIPS compliance
IKE, 317
IPsec, 302
password control, 286
fixed ARP (ARP attack protection), 264, 265
format
802.1X packet, 73
RADIUS packet, 3
forwarding
configuring ARP restricted forwarding, 259, 262
restricted (ARP detection), 257
free IP (EAD fast deployment), 106
FTP (SFTP), 200
function
enabling 802.1X proxy detection, 90
extended (portal authentication), 124
gateway
configuring IKE local security gateway name, 318
configuring IKE NAT gateway keepalive timer, 321
generating
local DSA key pair (SSH), 203
local RSA key pair (SSH), 203
group attributes (AAA), 19
guest VLAN
802.1X authentication, 81
configuring 802.1X, 94, 101
MAC authentication, 1 12
MAC authentication configuration, 1 15
port security support, 169
verifying 802.1X guest VLAN configuration, 103
handshake function (802.1X online user), 89
binding
static
entry
HP
802.1X implementation, 80
customer support and resources, 328
document conventions, 329
documents and manuals, 328
icons used, 329
proprietary RADIUS subattributes, 12
subscription service, 328
support contact information, 328
symbols used, 329
websites, 328
HW Terminal Access Controller Access Control
System. See HWTACACS
HWTACACS
configuring AAA for HWTACACS server Telnet
user, 47
configuring scheme, 32
creating scheme, 33
differences from RADIUS, 7
displaying, 38
level switching authentication for Telnet user, 66
maintaining, 38
messge exchange process, 7
protocols and standards, 10
setting packet shared keys, 35
setting timer to control server communication, 37
setting traffic statistics units, 36
setting username format, 36
specifying accounting server, 34
specifying authentication server, 33
specifying authorization server, 33
specifying server's VPN, 35
specifying source IP address for outgoing packets,
36
ICMPv6 (IPv6 ND attack defense configuration), 266
icons, 329
ignoring server authorization information (port
security), 175
IKE
configuration, 315, 323
configuring DPD detector, 322
configuring IKE peer, 319
configuring IKE proposal, 318
configuring keepalive timers, 321
configuring local security gateway name, 318
data authentication, 315
DH algorithm, 315
disabling IKE next payload check, 322
displaying, 323
DPD detection, 322
FIPS compliance, 317
338

Advertisement

Table of Contents
loading

Table of Contents