R211x-HP Flexfabric 11900 Security Configuration Guide

284
security SSH Stelnet server connection
establishment, 177
sec
urity SSH Stelnet server password
authentication, 184
sec
urity SSH Stelnet server publickey
authentication, 186
t
erminating
security SSH SFTP server connection, 182
test
ing
security FIPS conditional self-test, 245
s
ecurity FIPS power-up self-test, 245
sec
urity FIPS triggered self-test, 245
TF
TP
security local host public key distribution, 119
time
sec
urity IPsec IKE negotiation (time-based
lifetime), 129
timer
sec
urity 802.1X authentication timeout
timers, 72
sec
urity 802.1X quiet timer, 75
s
ecurity AAA HWTACACS real-time accounting
timer, 36
s
ecurity AAA HWTACACS server quiet
timer, 36
sec
urity AAA HWTACACS server response
timeout timer, 36
s
ecurity AAA RADIUS real-time accounting, 29
s
ecurity AAA RADIUS server quiet, 29
sec
urity AAA RADIUS server response
timeout, 29
sec
urity MAC authentication offline detect timer
configuration, 82
sec
urity MAC authentication quiet timer
configuration, 82
sec
urity MAC authentication server timeout
timer configuration, 82
tr
affic
security AAA HWTACACS traffic statistics
units, 35
s
ecurity AAA RADIUS traffic statistics units, 26
sec
urity IPsec configuration, 127 , 14 4
sec
urity IPsec IKE negotiation (traffic-based
lifetime), 129
sec
urity IPsec IKE-based tunnel for IPv4 packets
configuration, 147
sec
urity IPsec tunnel for IPv4 packets
configuration, 14 4
tr
ansform set (IPsec), 13 3
tr
ansporting
security IPsec encapsulation transport mode, 128
tr
iggered self-test, 246
tr
oubleshooting
port security, 105
por
t security mode cannot be set, 105
por
t security secure MAC addresses, 105
s
ecurity AAA HWTACACS, 59
s
ecurity AAA LDAP, 59
s
ecurity AAA RADIUS, 58
s
ecurity AAA RADIUS accounting error, 59
sec
urity AAA RADIUS authentication failure, 58
sec
urity AAA RADIUS packet delivery failure, 58
sec
urity IPsec IKE, 164
sec
urity IPsec IKE negotiation failure (no proposal
match), 16 4
sec
urity IPsec IKE negotiation failure (no proposal or
keychain referenced correctly), 164
sec
urity IPsec SA negotiation failure (invalid identity
info), 165
sec
urity IPsec SA negotiation failure (no transform
set match), 165
tunnelin
g
security IPsec configuration, 127 , 14 4
sec
urity IPsec encapsulation tunnel mode, 128
sec
urity IPsec IKE-based tunnel for IPv4 packets
configuration, 147
sec
urity IPsec tunnel establishment, 131
sec
urity IPsec tunnel for IPv4 packets
configuration, 14 4
U
UD
P
security AAA RADIUS implementation, 2
s
ecurity AAA RADIUS max request transmission
attempts, 26
sec
urity AAA RADIUS packet format, 4
s
ecurity AAA RADIUS session-control feature, 45
uni
cast
security 802.1X unicast trigger mode, 64, 73
U
nicast Reverse Path Forwarding. Use uRPF
updating
sec
urity passwords, 107, 107