R211x-HP Flexfabric 11900 Security Configuration Guide

256
algorithm
security IPsec authentication, 13 0
sec
urity IPsec encryption (3DES), 13 0
sec
urity IPsec encryption (AES), 13 0
sec
urity IPsec encryption (DES), 13 0
sec
urity IPsec IKE DH algorithm, 151
sec
urity SSH negotiation, 170
anti-r
eplay (IPsec), 14 0
an
y authentication (SSH), 170
a
pplication
security IPsec application-based tunnel
establishment, 131
sec
urity uRPF network, 237
a
pplying
security IPsec policy to interface, 139
ar
chitecture
security 802.1X, 61
ARP
attack protection. See ARP attack protection
AR
P attack protection
active acknowledgement, 222
au
thorized ARP configuration, 222
a
uthorized ARP configuration (DHCP relay
agent), 224
a
uthorized ARP configuration (DHCP
server), 223
a
utomatic scanning configuration, 229
blac
khole routing, 217
c
onfiguration, 216
det
ection configuration, 225
displa
ying ARP detection, 227
displa
ying unresolvable IP attack protection, 217
f
iltering configuration, 231, 232
f
ixed ARP configuration, 229
g
ateway protection, 230, 231
main
taining ARP detection, 227
pac
ket rate limit configuration, 219
p
acket source MAC consistency check, 222
pac
ket validity check configuration, 226
r
estricted forwarding, 227
sou
rce MAC-based attack detection, 219 , 221
so
urce MAC-based detection display, 220
so
urce suppression, 217
u
nresolvable IP attack, 217
u
nresolvable IP attack protection, 218
use
r validity check, 226
u
ser/packet validity check, 228
ARP de
tection
security IP source guard static binding entry, 206
assoc
iating
security IPsec SA, 129
at
tribute
security 802.1X RADIUS EAP-Message, 64
sec
urity 802.1X RADIUS
Message-Authentication, 64
s
ecurity AAA HWTACACS scheme
configuration, 31
sec
urity AAA ISP domain attribute configuration, 42
sec
urity AAA LDAP administrator attribute
configuration, 39
s
ecurity AAA LDAP scheme configuration, 38
s
ecurity AAA LDAP user attribute configuration, 39
s
ecurity AAA local user attribute configuration, 19
s
ecurity AAA local user configuration, 18
s
ecurity AAA RADIUS, 14
sec
urity AAA RADIUS common standard
attributes, 14
s
ecurity AAA RADIUS extended attributes, 6
sec
urity AAA RADIUS HP proprietary attributes, 15
s
ecurity AAA RADIUS scheme configuration, 23
s
ecurity AAA scheme configuration, 18
sec
urity AAA user group attribute configuration, 22
a
uthenticating
port security authentication modes, 88
por
t security client macAddressElseUserLoginSecure
configuration, 102
por
t security client userLoginWithOUI
configuration, 99
por
t security configuration, 88, 91 , 97
por
t security MAC address autoLearn mode
configuration, 97
sec
urity 802.1X access device initiated
authentication, 64
sec
urity 802.1X authentication, 65
sec
urity 802.1X authentication request max number
attempts, 72
sec
urity 802.1X authentication trigger function, 73
sec
urity 802.1X client-initiated, 64
sec
urity 802.1X EAP over RADIUS, 63
sec
urity 802.1X EAP relay authentication, 66
s
ecurity 802.1X EAP relay enable, 70