Sign In
Upload
Manuals
Brands
ProCurve Manuals
Network Hardware
800
User Manuals: ProCurve 800 Network Access Controller
Manuals and User Guides for ProCurve 800 Network Access Controller. We have
1
ProCurve 800 Network Access Controller manual available for free PDF download: Configuration Manual
ProCurve 800 Configuration Manual (406 pages)
Network Access Controller
Brand:
ProCurve
| Category:
Network Hardware
| Size: 3 MB
Table of Contents
Table of Contents
5
1 Overview of the Procurve NAC 800
13
Contents
13
Introduction
16
Hardware Overview
17
Leds
17
Console Ethernet Port
18
Panel LCD and Buttons
18
Serial Number and MAC Address
18
Ethernet Ports
19
Port 1
19
Port 2
19
Server Types
20
Choosing the Server Type
20
Deployment of One MS and Multiple Ess
20
CS Deployment
23
Management Server (MS)
24
Enforcement Server (ES)
26
Combination Server (CS)
26
Changing the Server Type
27
Enforcement Clusters
28
Enforcement Clusters for an MS and Ess
28
Enforcement Clusters for a CS
28
Endpoint Integrity
29
Endpoint Integrity Capabilities of the NAC 800
30
NAC Tests
30
NAC Policies
32
NAC Policy Groups
35
Testing Methods
36
NAC EI Agent
37
Activex
38
Agentless
39
Endpoint Integrity Posture
40
Accessible Services
40
Performance Implications of Endpoint Integrity Checks
41
Post-Connect Testing
41
RADIUS Server
42
Procurve NAC 800 RADIUS Capabilities
43
RADIUS Capabilities of the NAC 800 Integrated with IDM
44
Deployment Methods
45
802.1X Deployment Method
46
802.1X Overview
46
Types of Access Control Provided by the NAC 800
47
Deployment Method-Endpoint Integrity with or Without RADIUS
48
How the NAC 800 Quarantines Endpoints
48
How and Where to Deploy the NAC 800
50
802.1X Deployment Method-RADIUS Server Only
55
How and Where to Deploy the NAC 800
55
DHCP Deployment Method
56
Types of Access Control Provided by the NAC 800
57
Two Options for a DHCP Deployment
57
Deployment
57
Deployment
59
How the NAC 800 Quarantines Endpoints for a DHCP
60
Deployment
60
Enforcement Methods for DHCP Quarantining
63
Designing the Quarantine Subnet
64
Inline Deployment Method
68
Types of Access Control Provided by the NAC 800
69
How the NAC 800 Quarantines Endpoints
69
Configuring Accessible Services for Inline Method
69
How and Where to Deploy the NAC 800
70
2 Management Options for the Procurve NAC
75
Contents
75
Overview
77
Menu Interface and Panel LCD
79
Access the Menu Interface
79
Console Session
79
SSH Session
81
Navigate the Menu Interface
82
Configure Initial Settings with the Menu Interface
83
Set the Server Type with the Menu Interface
84
Set the IP Address with the Menu Interface
86
Test IP Settings (Ping)
87
Change the Password to the Menu Interface
89
Complete Other Tasks in the Menu Interface
91
Reboot the NAC 800 in the Menu Interface
92
Shut down the NAC 800 in the Menu Interface
93
Turn the Locator LED on and off
94
View System Information
95
Access the Panel LCD Menu
96
Navigate the Panel LCD Menu
97
Configure Initial Settings with the Panel LCD Menu
98
Set the Server Type with the Panel LCD Menu
98
Set the IP Address with the Panel LCD Menu
100
Test IP Settings (Ping) with the Panel LCD Menu
102
Complete Other Tasks Using the Panel LCD Menu
103
Reboot the NAC 800 Using the Panel LCD Menu
104
Shut down the NAC 800 Using the Panel LCD
105
Set the Ports Speed and Duplex Settings
106
Root Access to the NAC 800
109
Web Browser Interface
111
Access the Web Browser Interface
111
Requirements on the NAC 800
111
Requirements on the Management Station
112
Steps for Accessing the Web Browser Interface
113
Navigate the Web Browser Interface
113
Home Window
113
Common Features in Web Browser Interface Windows
118
Following Instructions to Navigate the Web Browser Interface
120
Following Instructions to Navigate the Web Browser
120
Procurve Manager (PCM) Plus
122
Enable PCM Plus to Detect the NAC 800
122
Capabilities of PCM Plus for Managing the NAC 800
123
IDM
124
Enable IDM to Detect the NAC 800
124
Capabilities of IDM for Managing the NAC 800
127
3 Initial Setup of the Procurve NAC 800
129
Contents
129
Contents
130
System Settings
131
System Settings-Initial Configuration
132
Initial Configuration of CS or MS Settings
132
Initial Configuration of es Settings
137
Edit System Settings
144
Edit System Settings on an MS or a CS
144
Edit System Settings on an es
161
Licenses
169
Management and Maintenance
169
Upgrade the Software
169
Create Management Users
171
Create User Accounts
172
Configure User Roles
175
Digital Certificates
182
Install a CA-Signed Certificate for HTTPS
183
Generate a Key
184
Install the Root CA Certificate
185
Create a Certificate Request and Transfer It off the NAC 800
186
Download and Install the Signed Certificate
188
Restart the HTTPS Server
189
Install a New Self-Signed Certificate for HTTPS
189
Generate the Self-Certificate and Key
190
Export the Self-Signed Certificate to a File
191
Install the Self-Signed Certificate as a Trusted Root
191
Restart the HTTPS Server
192
Install the Self-Signed Certificate as a Trusted Root Certificate on Endpoints
192
4 Configuring the RADIUS Server-Integrated with Procurve Identity Driven Manager
195
Contents
195
Overview
197
RADIUS Overview
197
Authentication Protocols
198
Dynamic or User-Based Settings
198
IDM Overview
199
Data Store Overview
200
Local Database
201
AD (Windows Domain)
201
LDAP Server
202
Proxy RADIUS Server
203
Configure the NAC 800 as a RADIUS Server
205
Specify the Quarantine Method (802.1X)
206
Configure Authentication Settings
208
Configure Authentication to the NAC 800'S Local Database
208
Configure Authentication to a Windows Domain
210
Configure Authentication to an LDAP Server
214
Configure Authentication to a Proxy RADIUS Server
224
Test Authentication Settings
229
Add Nass as 802.1X Devices
234
Apply Changes
238
Restart the RADIUS Server
238
Manage Digital Certificates for RADIUS
242
Install the CA Root Certificate on the NAC 800
243
Install a Server Certificate for RADIUS
244
Create a Self-Signed Certificate
245
Install a CA-Signed Certificate Using a Request Generated on the NAC 800
247
Install a CA-Signed Certificate Using a Request Generated on Behalf of the NAC 800
252
Install a CA-Signed Certificate Using a Request
252
Manage Certificates on Endpoints
256
Disable Server Validation on Endpoints
256
5 Configuring the RADIUS Server-Without Identity Driven Manager
265
Contents
265
Overview
267
RADIUS Overview
267
Authentication Protocols
268
Dynamic or User-Based Settings
268
Data Store Overview
269
AD (Windows Domain)
269
LDAP Server
270
Proxy RADIUS Server
270
Configure the NAC 800 as a RADIUS Server
272
Specify the Quarantine Method (802.1X)
272
Configure Authentication Settings
274
Configure Authentication to a Windows Domain
274
Configure Authentication to an LDAP Server
278
Configure Authentication to a Proxy RADIUS Server
287
Test Authentication Settings
292
Add Nass as 802.1X Devices
298
Apply Changes
302
Restart the RADIUS Server
302
Manage Digital Certificates for RADIUS
306
Install the CA Root Certificate on the NAC 800
307
Install a Server Certificate for RADIUS
309
Create a Self-Signed Certificate
309
Install a CA-Signed Certificate Using a Request Generated
311
Install a CA-Signed Certificate Using a Request Generated on Behalf of the NAC 800
316
Manage Certificates on Endpoints
320
Disable Server Validation on Endpoints
320
Contents
329
6 Disabling Endpoint Integrity Testing
330
Overview
330
Configure Exceptions
330
Configure Exceptions for the Cluster Default Settings
331
Configure Exceptions for a Particular Cluster
333
7 Redundancy and Backup for RADIUS Services
338
Redundancy
338
Planning Redundancy for RADIUS-Only Deployments
338
Place the RADIUS Servers
339
Configuring Network Devices for Redundant RADIUS Servers
340
Configure the Nass
341
Configure Multiple LDAP Servers on the NAC 800
342
Use IDM to Configure the Usernames and Passwords
347
Provide Duplicate Network Pathways
340
Test Your Redundant Configurations
347
Back up Your NAC 800 Configuration
348
Configure the Web Browser so that It Allows You to
349
Configure the Web Browser so that It Allows You to
350
Restore the System from the Backup File
351
Contents
381
Common Linux Commands
382
VI Editor
384
Appendix B: Linux Commands
384
Command Mode
384
Insert Mode
385
Keytool
386
Openssl
389
Service Commands
392
Advertisement
Advertisement
Related Products
ProCurve 8200zl Series
ProCurve Categories
Switch
Network Router
Wireless Access Point
Network Hardware
Security System
More ProCurve Manuals
Login
Sign In
OR
Sign in with Facebook
Sign in with Google
Upload manual
Upload from disk
Upload from URL