Access Security Guide K/KA/KB.15.15

manager access privilege, service type
value;RADIUS:service type value, 142
manager access privilege;RADIUS:login-privilege mode,
146
MD5, 195
messages, 140
MS-RAS-Vendor attribute, 184
multiple ACL application types in use, 218
multiple server groups, 174
NAS-Prompt-User service-type value, 147
network accounting, 185
operating rules, switch, 195
override, precedence, multiple clients, 202
rate-limiting configuration, 200
security note, 195
server access order, 192
server access order, changing, 179
server-group command, 152, 153, 174
servers, multiple, 151
service-type value, 147
service-type value, null, 147
shared secret key, saving to configuration file, 46
show accounting, 173
show authentication
authentication statistics, 171
statistics, viewing, 170
TLS, 195
Tunnel-Type attribute, 184
vendor specific attributes;, 184
vendor-specific attributes; RADIUS: HP-command-string,
163
VSAs, 164
VSAs for client limit, 165
web browser security not supported, 142
web-browser security not supported;RADIUS:SNMP
access security not supported, 195
webagent security not supported;RADIUS:webagent
access controls, 139
RADIUS-assigned ACLs, 305
802.1X port-based access, 219
802.1X user-based access, 219
contrasting dynamic and static dynamic
(RADIUS-assigned) Contrasting, 217
contrasting dynamic and staticdynamic
(RADIUS-assigned) and static ACLs, 217
deny any, implicit, switched packets, 219
deny in any ACL on an interface, 219
dynamic port ACL, effect, 219
filters; enhancing network security, 215
implicit deny, 218
multiple application types in use, 218
multiple clients, access restriction, 218, 219
multiple dynamic ACLs, 219
multiple, on an interface, 219
resource monitor, 225
source routing, caution;source-routing, caution, 217
standard attribute, 220
switched packets, 219
vendor-specific attribute, 220, 221, 222
RADIUS-assigned ACLs;RADIUS
ACL, 214
rate-limiting
RADIUS and CLI option, 213
RADIUS egress, 213
RADIUS ingress, 213
RADIUS server specified, 200
RADIUS server support; RADIUS: rate-limiting, 210
RADIUS-assigned vs. applied, 213
RADIUS-assigned,increments, 213
RADIUS-assigned., 201
removing
password protection, 23
Reset-on-clear
disabled when saving security credentials to
configuration file, 51
RFCs
RFC 2548, 184
RFC 3580, 184
RFC 4675, 184
routing
source-routing, caution, 217
S
secret keys
enhanced secure mode, 501
secure mode
enabling enhanced, 498
enhanced, 498
standard, 498
Secure web management, 256
Assigning local login and enabling password, 256
Configuration, 256
security
authorized IP managers, 413
security credentials, 26
802.1X credentials saved to configuration file, 31, 48
copying startup configuration, 51
disabling Reset-on-clear option, 51
downloading a configuration file, 51
downloading from a server, 46
manager username and password, 46
operator username and password, 46
SNMPv3, 47
SSH private keys not saved, 31
viewing in startup configuration, 51
when SNMPv3 credentials in downloaded file are not
supported, 31
security settings, 26
security violations
notices of, 408
Self-signed certificate, 256
Self-signed certificate browser compatibility
Browser compatibility self-signed certificate, 257
setting
inactivity timer, 21
shared secret key
RADIUS, 46
TACACS, 46
533