Authentication/Authorization For Ssh/Telnet Users By A Radius Server - HP 10500 Series Configuration Manual

Security configuration guide
Hide thumbs Also See for 10500 Series:
Table of Contents

Advertisement

[Switch] local-user hello
[Switch-luser-hello] service-type telnet
[Switch-luser-hello] password simple hello
[Switch-luser-hello] quit
# Configure authentication and authorization methods for the ISP domain.
[Switch] domain bbb
[Switch-isp-bbb] authentication login local
[Switch-isp-bbb] authorization login local
[Switch-isp-bbb] quit
2.
Verify the configuration:
Telnet to the switch, and enter the username hello@bbb and the correct password. You pass
authentication and log in to the switch. Use the display connection command on the switch to see
information about the user connection.
[Switch] display connection
Index=0
IP=192.168.1.58
IPv6=N/A
Total 1 connection(s) matched.
Authentication/authorization for SSH/Telnet users by a
RADIUS server
The authentication and authorization configuration for SSH users is similar to that for Telnet users. This
example uses authentication and authorization configuration for SSH users.
Network requirements
As shown in
authorization, and to include the domain name in a username sent to the RADIUS server.
Configure IMC to provide the RADIUS server, add an account with the username hello@bbb on the
RADIUS server, and configure the RADIUS server to assign the privilege level of 3 to the user after the
user passes authentication.
Set the shared keys for secure RADIUS communication to expert.
Figure 12 Network diagram
, Username=hello@bbb
Figure
12, configure the switch to use the RADIUS server for SSH user authentication and
49

Advertisement

Table of Contents
loading

Table of Contents