HP 6600 Security Configuration Manual page 52

Table of Contents

Advertisement

The ratio of the number of failed transmission attempts to the total number of authentication request
transmission attempts reaches the threshold. This threshold ranges from 1% to 100% and defaults to
30%. This threshold can only be configured through the MIB.
The failure ratio is typically small. If a trap message is triggered because the failure ratio is higher than
the threshold, troubleshoot the configuration on and the communication between the NAS and the
RADIUS server.
To enable the trap function for RADIUS:
Step
1.
Enter system view.
2.
Enable the trap function for
RADIUS.
Enabling the RADIUS client service
To receive and send RADIUS packets, enable the RADIUS client service on the device. If RADIUS is not
required, disable the RADIUS client service to avoid attacks that exploit RADIUS packets.
To enable the RADIUS client service:
Step
1.
Enter system view.
2.
Enable the RADIUS client
service.
Displaying and maintaining RADIUS
Task
Display the configuration of RADIUS
schemes.
Display the RADIUS packet statistics.
Display information about buffered
stop-accounting requests for which no
responses have been received.
Clear RADIUS statistics.
Clear the buffered stop-accounting
requests for which no responses have
been received.
Command
system-view
radius trap
{ accounting-server-down |
authentication-error-threshold |
authentication-server-down }
Command
system-view
radius client enable
Command
display radius scheme [ radius-scheme-name ]
[ slot slot-number ] [ | { begin | exclude |
include } regular-expression ]
display radius statistics [ slot slot-number ] [ |
{ begin | exclude | include }
regular-expression ]
display stop-accounting-buffer { radius-scheme
radius-scheme-name | session-id session-id |
time-range start-time stop-time | user-name
user-name } [ slot slot-number ] [ | { begin |
exclude | include } regular-expression ]
reset radius statistics [ slot slot-number ]
reset stop-accounting-buffer { radius-scheme
radius-scheme-name | session-id session-id |
time-range start-time stop-time | user-name
user-name } [ slot slot-number ]
38
Remarks
N/A
Disabled by default.
Remarks
N/A
Optional.
Enabled by default.
Remarks
Available in any
view.
Available in any
view.
Available in any
view.
Available in user
view.
Available in user
view.

Advertisement

Table of Contents
loading

This manual is also suitable for:

Hsr6600

Table of Contents