Aaa Configuration Task List - 3Com S7906E Configuration Manual

S7900e family release 6600 series
Hide thumbs Also See for S7906E:
Table of Contents

Advertisement

For a user who has logged in to the device, AAA provides the following services to enhance device
security:
Command authorization: Allows the authorization server to check each command executed by the
login user and only authorized commands can be successfully executed.
Command accounting: Allows the accounting server to record all commands executed on the
device or all authorized commands successfully executed.
Level switching authentication: Allows the authentication server to authenticate users performing
privilege level switching. As long as passing level switching authentication, users can switch their
user privilege levels, without logging out and disconnecting the current connections.
You can configure different authentication, authorization, and accounting methods for different users in
a domain. For configuration details, refer to
Table 1-4 Configuration references for the related parameters
Access type/service type
LAN (such as 802.!X and MAC address
authentication)
Login (such as SSH, Telnet, FTP, and terminal)
Portal
Command authorization and accounting
Level switching authentication
Protocols and Standards
The protocols and standards related to AAA, RADIUS, and HWTACACS include:
RFC 2865: Remote Authentication Dial In User Service (RADIUS)
RFC 2866: RADIUS Accounting
RFC 2867: RADIUS Accounting Modifications for Tunnel Protocol Support
RFC 2868: RADIUS Attributes for Tunnel Protocol Support
RFC 2869: RADIUS Extensions
RFC 1492: An Access Control Protocol, Sometimes Called TACACS

AAA Configuration Task List

The basic procedure to configure AAA is as follows:
1)
Configure the required AAA schemes.
Local authentication: Configure local users and related attributes, including usernames and
passwords of the users to be authenticated.
Remote authentication: Configure the required RADIUS, and/or HWTACACS schemes, and
configure user attributes on the servers accordingly.
2)
Configure the AAA methods: Reference the configured AAA schemes in the users' ISP domains.
Configuring
AAA.
802.1X Configuration and MAC Authentication
Configuration in the Security Volume
SSH2.0 Configuration in the Security Volume.
FTP and TFTP Configuration in the IP Services
Volume
Portal Configuration in the Security Volume
Login Configuration in the System Volume.
Basic System Configuration in the System
Volume.
1-11
Refer to...

Hide quick links:

Advertisement

Chapters

Table of Contents
loading

This manual is also suitable for:

S7910eS7906e-vS7903eS7903e-sS7902e

Table of Contents