Nortel Networks 42C4911 manual SSH/SCP Integration with Radius Authentication

Models: 42C4911

1 260
Download 260 pages 54.2 Kb
Page 60
Image 60

Alteon OS Application Guide

SSH/SCP Integration with Radius Authentication

SSH/SCP is integrated with RADIUS authentication. After the RADIUS server is enabled on the switch, all subsequent SSH authentication requests will be redirected to the specified RADIUS servers for authentication. The redirection is transparent to the SSH clients.

SSH/SCP Integration with TACACS+ Authentication

SSH/SCP is integrated with TACACS+ authentication. After the TACACS+ server is enabled on the switch, all subsequent SSH authentication requests will be redirected to the specified TACACS+ servers for authentication. The redirection is transparent to the SSH clients.

SecurID Support

SSH/SCP can also work with SecurID, a token card-based authentication method. The use of SecurID requires the interactive mode during login, which is not provided by the SSH connec- tion.

NOTE There is no SNMP or Browser-Based Interface (BBI) support for SecurID because the SecurID server, ACE, is a one-time password authentication and requires an interactive ses- sion.

Using SecurID with SSH

Using SecurID with SSH involves the following tasks.

„To log in using SSH, use a special username, “ace,” to bypass the SSH authentication.

„After an SSH connection is established, you are prompted to enter the username and pass- word (the SecurID authentication is being performed now).

„Provide your username and the token in your SecurID card as a regular Telnet user.

Using SecurID with SCP

Using SecurID with SCP can be accomplished in two ways:

„Using a RADIUS server to store an administrator password.

You can configure a regular administrator with a fixed password in the RADIUS server if it can be supported. A regular administrator with a fixed password in the RADIUS server can perform both SSH and SCP with no additional authentication required.

„Using an SCP-only administrator password.

Use the command, /cfg/sys/sshd/scpadm to bypass the checking of SecurID.

60 „ Chapter 1: Accessing the Switch

42C4911, January 2007

Page 60
Image 60
Nortel Networks 42C4911 SSH/SCP Integration with Radius Authentication, SSH/SCP Integration with TACACS+ Authentication

42C4911 specifications

Nortel Networks 42C4911 is a key hardware component designed to meet the needs of modern telecommunications infrastructure. As part of Nortel's extensive portfolio, the 42C4911 has made a significant impact on network design and operation, particularly in enterprises requiring reliable and efficient communication solutions.

One of the standout features of the 42C4911 is its modularity. This allows for flexible configurations and upgrades, enabling organizations to adapt to changing technology requirements and business demands. The design philosophy behind the 42C4911 emphasizes scalability, allowing users to start with a basic setup and expand it as their networking needs grow. This feature is particularly appealing to medium and large enterprises that anticipate increased data and communication requirements over time.

In terms of technology, the 42C4911 supports various telecommunications standards, making it versatile for multiple applications. It typically integrates with other Nortel equipment and can work with third-party devices, ensuring seamless interoperability across different platforms. This is critical as organizations look to create unified communications systems that can handle voice, data, and video traffic efficiently.

The 42C4911 is known for its robust performance and reliability. It is designed to operate continuously under demanding conditions, which is essential for organizations that rely on constant connectivity for their operations. Its built-in redundancy features help safeguard against potential failures, thus enhancing the overall stability of the network. This reliability is further complemented by Nortel's commitment to high-quality manufacturing standards, ensuring that users receive a durable and efficient product.

Security is another major consideration for any networking device, and the 42C4911 provides advanced security features to protect sensitive data. With increasing cybersecurity threats, organizations prioritize devices that offer strong encryption and access control mechanisms. The 42C4911 addresses these needs while facilitating secure communication channels for users, which is essential in today's increasingly interconnected world.

Overall, the Nortel Networks 42C4911 stands out as a versatile and powerful component in the telecommunications landscape. Its modular design, compatibility with diverse technologies, reliability, and emphasis on security make it an appealing choice for organizations looking to enhance their networks. As companies continue to navigate the complexities of communication, devices like the 42C4911 play a crucial role in ensuring that they remain connected and efficient.