tracking client authentication failures … 8-33 Web authentication … 10-4

Web/MAC … 10-20

See also 802.1X access control. port scan, detecting 8-33

port security

802.1X, learn mode requirement … 11-14 authorized address definition … 11-5 basic operation … 11-4

caution, device limit … 11-14 configuring … 11-7

configuring in browser interface … 11-30,11-37 event log … 11-36

notice of security violations … 11-30 operating notes … 11-38 overview … 1-7,11-3

prior to … 11-38

proxy web server … 11-38 TCP/UDP closed ports … 8-33

port-based access control

password … 2-11,2-21port-security learn mode … 11-14 VLAN, tagged member … 10-31See also 802.1X access control.

ports

trusted … 8-6

prior to 11-34,11-35,11-38

Privacy Enhanced Mode (PEM)

See SSH.

privilege-mode 4-11,4-12

ProCurve

switch documentation … -xvii

ProCurve Manager

IDM as a plug-in to … 1-21 port security alerts … 11-4

proxy

web server … 11-38

R

RADIUS

accounting … 5-4,5-37

accounting, configuration outline … 5-39 accounting, configure server access … 5-40 accounting, configure types on switch … 5-42 accounting, exec … 5-38,5-42 accounting, interim updating … 5-44 accounting, network … 5-42,5-43

accounting, operating rules … 5-39 accounting, server failure … 5-39 accounting, session-blocking5-44 accounting, start-stop method … 5-43 accounting, statistics terms … 5-47 accounting, stop-only method … 5-43 accounting, system … 5-38,5-42administrative-userservice-type value … 5-14 authentication options … 5-3 authentication, authorized … 5-11 authentication, local … 5-24 authentication, web … 5-10 authentication, web browser … 5-11,5-14 authorization … 5-26

bypass RADIUS server … 5-13change-of-authorization attribute … 5-36 commands accounting … 5-38 commands authorization … 5-26 commands, accounting … 5-37 commands, switch … 5-8 configuration outline … 5-9 configure server access … 5-14 configuring commands authorization … 5-28 configuring switch global parameters … 5-17Egress-VLAN ID attribute … 5-35Egress-VLAN-Name attribute … 5-35Framed-IP-Address5-38

general setup … 5-7HP-acct-terminate-cause attribute … 5-36HP-Command-Exception5-28HP-command-string5-28

IP attribute … 5-38

local authentication … 5-13

login privilege-mode, application options … 5-14login-privilege mode … 5-13

manager access denied … 5-14 manager access privilege … 5-13 manager access privilege, service type

value … 5-8 MD5 … 5-6 messages … 5-53

MS-RAS-Vendor attribute … 5-36NAS-Prompt-Userservice-type value … 5-14 network accounting … 5-37

operating rules, switch … 5-6 security … 5-13

security note … 5-4

server access order … 5-39

8 – Index