The following table describes the RADIUS Server Configuration Menu options.

Table 81 RADIUS Server Configuration Menu options

Command

Description

 

 

prisrv <IP address>

Sets the primary RADIUS server address.

 

 

secsrv <IP address>

Sets the secondary RADIUS server address.

 

 

secret <1-32 characters>

This is the shared secret between the switch and the RADIUS server(s).

 

 

secret2 <1-32 characters>

This is the secondary shared secret between the switch and the RADIUS

 

server(s).

 

 

port <UDP port number>

Enter the number of the User Datagram Protocol (UDP) port to be

 

configured, between 1500-3000. The default is 1645.

 

 

retries <1-3>

Sets the number of failed authentication requests before switching to a

 

different RADIUS server. The range is 1-3 requests The default is 3

 

requests.

 

 

timeout <1-10>

Sets the amount of time, in seconds, before a RADIUS server

 

authentication attempt is considered to have failed. The range is 1-10

 

seconds. The default is 3 seconds.

 

 

telnet enabledisable

Enables or disables the RADIUS back door for telnet/SSH/ HTTP/HTTPS.

 

This command does not apply when secure backdoor (secbd) is

 

enabled.

secbd enabledisable

Enables or disables the RADIUS back door using secure password for telnet/SSH/ HTTP/HTTPS. This command does not apply when backdoor (telnet) is enabled.

on

Enables the RADIUS server.

 

 

 

off

Disables the RADIUS server. This is the default.

 

 

 

cur

Displays the current RADIUS server parameters.

 

 

 

 

 

 

IMPORTANT: If RADIUS is enabled, you must login using RADIUS authentication when connecting via the console or Telnet/SSH/HTTP/HTTPS. Backdoor for console is always enabled, so you can connect using noradius and the administrator password even if the backdoor (telnet) or secure backdoor (secbd) are disabled.

If Telnet backdoor is enabled (telnet ena), type in noradius as a backdoor to bypass RADIUS checking, and use the administrator password to log into the switch. The switch allows this even if RADIUS servers are available.

If secure backdoor is enabled (secbd ena), type in noradius as a backdoor to bypass RADIUS checking, and use the administrator password to log into the switch. The switch allows this only if RADIUS servers are not available.

TACACS+ server configuration

Command: /cfg/sys/tacacs+

[TACACS+ Server Menu]

 

prisrv

- Set IP address

of primary TACACS+ server

secsrv

- Set IP address

of secondary TACACS+ server

secret

- Set secret for

primary TACACS+ server

secret2

- Set secret for

secondary TACACS+ server

port

- Set TACACS+ port number

retries

- Set number of TACACS+ server retries

timeout

- Set timeout value of TACACS+ server retries

telnet

- Enable/disable

TACACS+ back door for telnet/ssh/http/https

secbd

- Enable/disable TACACS+ secure backdoor for telnet/ssh/http/https

cmap

- Enable/disable

TACACS+ new privilege level mapping

usermap

- Set user privilege mappings

on

- Enable TACACS+

authentication

off

- Disable TACACS+ authentication

cur

- Display current TACACS+ settings

 

 

 

Configuration Menu 94

Page 94
Image 94
HP GbE2c manual TACACS+ server configuration

GbE2c specifications

The HP GbE2c is a high-performance Ethernet Switch designed to meet the increasing demands of data center environments. As a critical component in Hewlett-Packard's networking lineup, the GbE2c provides a seamless blend of speed, reliability, and advanced networking capabilities, making it an essential tool for enterprises aiming to enhance their network infrastructure.

One of the standout features of the HP GbE2c is its support for Gigabit Ethernet, which allows for high-speed data transmission and reduced latency. This switch is designed to support the growing bandwidth needs of modern applications, ensuring that data is transmitted quickly and efficiently across the network. The GbE2c is particularly beneficial for organizations implementing virtualization technologies, as its Gigabit interfaces help in optimizing data flow between virtual machines.

The GbE2c also incorporates advanced Layer 2 and Layer 3 switching capabilities. This ensures that it can handle both basic and more complex networking tasks, such as routing traffic between different VLANs and enabling Internet Protocol (IP) addressing. The switch supports various protocols, enabling seamless integration into a wide range of network environments.

Additionally, the HP GbE2c is equipped with a robust management system that allows network administrators to easily configure and monitor network settings. With its user-friendly interface, administrators can gain insights into traffic patterns, performance metrics, and potential issues, helping to maintain optimal network performance.

Power efficiency is another key characteristic of the HP GbE2c. The switch is designed to minimize power consumption without sacrificing performance, making it a more sustainable choice for data centers aiming to reduce their carbon footprint. This energy-efficient design is crucial for enterprises looking to lower operational costs while maintaining a high level of service.

The HP GbE2c also boasts high availability features, including redundant power supplies and failover options, ensuring that the network remains operational even in the event of a component failure. This reliability is critical for businesses that require uninterrupted network access for their daily operations.

In summary, the HP GbE2c Ethernet Switch combines speed, versatility, and efficiency, making it an ideal choice for businesses seeking to enhance their networking capabilities. Its robust feature set, advanced management options, and focus on energy efficiency position it as a top-tier solution in the competitive networking landscape. Organizations can rely on the GbE2c to deliver high performance and reliability, thus meeting the demands of today's data-intensive environments.