Configuring Aaa Methods For Isp Domains; Configuration Prerequisites; Creating An Isp Domain - HP A5830 Series Configuration Manual

Security switch
Hide thumbs Also See for A5830 Series:
Table of Contents

Advertisement

To do...
5.
Set the real-time accounting
interval.
Displaying and maintaining HWTACACS
To do...
Display the configuration information
or statistics of HWTACACS schemes
Display information about buffered
stop-accounting requests for which no
responses have been received
Clear HWTACACS statistics
Clear buffered stop-accounting
requests that get no responses

Configuring AAA methods for ISP domains

Configure AAA methods for an ISP domain by referencing configured AAA schemes in ISP domain view.
Each ISP domain has a set of default AAA methods, which are local authentication, local authorization,
and local accounting by default and can be customized. If you do not configure any AAA methods for
an ISP domain, the switch uses the system default AAA methods for authentication, authorization, and
accounting of the users in the domain.

Configuration prerequisites

To use local authentication for users in an ISP domain, configure local user accounts on the switch (see
"Configuring local user
To use remote authentication, authorization, and accounting, create the required RADIUS and
HWTACACS schemes as described in
schemes."

Creating an ISP domain

In a networking scenario with multiple ISPs, the switch may connect users of different ISPs. Users of
different ISPs may have different user attributes, such as different username and password structures,
different service types, and different rights. To distinguish the users of different ISPs, configure ISP
domains, and configure different AAA methods and domain attributes for the ISP domains.
The switch can accommodate up to 16 ISP domains, including the system predefined ISP domain system.
You can specify one of the ISP domains as the default domain.
Use the command...
timer realtime-accounting minutes
Use the command...
display hwtacacs [ hwtacacs-server-
name [ statistics ] ] [ slot slot-number ] [
| { begin | exclude | include } regular-
expression ]
display stop-accounting-buffer
hwtacacs-scheme hwtacacs-scheme-
name [ slot slot-number ] [ | { begin |
exclude | include } regular-expression ]
reset hwtacacs statistics { accounting |
all | authentication | authorization } [
slot slot-number ]
reset stop-accounting-buffer hwtacacs-
scheme hwtacacs-scheme-name [ slot
slot-number ]
attributes").
"Configuring RADIUS
36
Remarks
Optional
12 minutes by default
Remarks
Available in any view
Available in any view
Available in user view
Available in user view
schemes" and
"Configuring HWTACACS

Advertisement

Table of Contents
loading

Table of Contents