Aaa Hic Server-Name - Alcatel-Lucent OmniSwitch 6850-48 Cli Reference Manual

Alcatel-lucent omniswitch 6850-48: reference guide
Hide thumbs Also See for OmniSwitch 6850-48:
Table of Contents

Advertisement

aaa hic server-name

Configures the identity of the Host Integrity Check (HIC) InfoExpress CyberGatekeeper server. HIC is a
User Network Profile (UNP) option that when enabled, verifies the integrity of a device connected to the
switch. Both HIC and UNP are components of the Access Guardian security framework.
aaa hic server-name server ip-address ip_address secret secret [role {primary | backup}] [udp-port
udp_port]
aaa hic no server-name server
Syntax Definitions
server
ip_address
secret
primary | backup
udp_port
Defaults
parameter
udp_port
Platforms Supported
OmniSwitch 6400, 6850, 6850E, 6855
Usage Guidelines
Configuring the HIC server identity and related parameters is required before globally enabling the
HIC feature for the switch.
The primary server is initially configured as the active server and the backup server as inactive.
A keepalive message will be sent to the active server if the switch does not receive any HIC-UPDATEs
from the server for 16 seconds. The switch will remain the active server upon receiving the keepalive
acknowledgement.
The switch will send a total of four keepalive messages to the active server in 6 second intervals. If no
response is received, the inactive server becomes the active server provided the server status is UP.
If both servers are unavailable the switch operates in either Hold or Pass-through mode based on the
HIC Server failure mode that has been configured.
Background polling (Keepalive) packets are sent to the primary server every 16 seconds.
page 36-88
The name of the HIC server.
The IP address of the HIC server.
The shared secret known to the switch and the server, but which is not
sent over the network. Can be any text or hexadecimal string but MUST
match the secret configured on the server. The secret is case-sensitive.
Configures this server as either the Primary or Backup HIC server.
The UDP destination port number (1025–65536) for HIC requests.
default
11707
OmniSwitch CLI Reference Guide
AAA Commands
June 2012

Advertisement

Table of Contents
loading

Table of Contents