HP VPN Firewall Appliances Getting Started Command Reference

38
If the PKI certificate of the user is correct and not expired, the CN field in the certificate is used as
the username to perform AAA authentication. If the authentication succeeds, the user automatically
enters the Web interface of the device.
If the PKI certificate of the user is correct and not expired, but the AAA authentication fails, the
device shows the Web login page. The user can log in to the device after entering correct username
and password.
When the PKI certificate of the user is incorrect or expired, the HTTPS connection is terminated.
Examples
# Specify the auto authentication mode for users trying to log in to the device through HTTPS.
<Sysname> system-view
[Sysname] web https-authorization mode auto
web idle-timeout
Use web idle-timeout to set the Web user connection timeout time.
Use undo web idle-timeout to restore the default.
Syntax
web idle-timeout minutes
undo web idle-timeout
Default
The Web user connection timeout time is 10 minutes.
Views
System view
Default command level
2: System level
Parameters
minutes: Timeout time in minutes, in the range of 1 to 999.
Examples
# Set the Web user connection timeout time to 20 minutes.
<System> system-view
[System] web idle-timeout 20
web logbuffer size
Use web logbuffer size to set the size of the buffer for Web login logging.
Use undo web logbuffer size to restore the default.
Syntax
web logbuffer size pieces
undo web logbuffer size