Enabling Authorization - HP ProCurve 6120G/XG Manual

Hp procurve series 6120 blade switches access security guide
Hide thumbs Also See for ProCurve 6120G/XG:
Table of Contents

Advertisement

RADIUS Authentication, Authorization, and Accounting
Commands Authorization

Enabling Authorization

To configure authorization for controlling access to the CLI commands, enter
this command at the CLI.
Syntax: [no] aaa authorization <commands> <radius | none>
For example, to enable the RADIUS protocol as the authorization method:
When the NAS sends the RADIUS server a valid username and password, the
RADIUS server sends an Access-Accept packet that contains two attributes
—the command list and the command exception flag. When an authenticated
user enters a command on the switch, the switch examines the list of com­
mands delivered in the RADIUS Access-Accept packet as well as the command
exception flag, which indicates whether the user has permission to execute
the commands in the list. See Configuring the RADIUS Server on page 5-37.
After the Access-Accept packet is deliver, the command list resides on the
switch. Any changes to the user's command list on the RADIUS server are not
seen until the user is authenticated again.
5-36
Configures authorization for controlling access to CLI
commands. When enabled, the switch checks the list of commands
supplied by the RADIUS server during user authentication to
determine if a command entered by the user can be executed.
radius: The NAS requests authorization information from the
RADIUS server. Authorization rights are assigned by user or
group.
none
:
The NAS does not request authorization information.
ProCurve(config)# aaa authorization commands radius

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Procurve 6120xgProcurve 6120 series

Table of Contents