HP 10500 Series Configuration Manual page 358

Security configuration guide
Hide thumbs Also See for 10500 Series:
Table of Contents

Advertisement

creating user profile, 188
destroying local asymmetric key pair (public key),
193
disabling first-time SSH authentication, 209, 210
disabling IKE next payload check, 322
displaying FIPS, 297
displaying host public key in specific format, 193
displaying host public key information, 193
displaying IKE, 323
displaying IPsec, 312
displaying local host public key, 192
displaying password control, 291
displaying portal, 141
displaying source MAC address-based ARP attack
detection, 255
displaying SSH SFTP help information, 214
displaying TCP attack protection, 235
displaying user profile, 190
EAP relay authentication (802.1X), 77
EAP termination authentication (802.1X), 78
enabling 802.1X, 86
enabling 802.1X EAP relay, 86
enabling 802.1X EAP termination, 86
enabling
802.1X
re-authentication function, 93
enabling 802.1X proxy detection function, 90
enabling ACL checking for de-encapsulated IPsec
packets, 310
enabling ARP attack protection black hole routing,
252
enabling FIPS mode, 296
enabling first-time SSH authentication, 209, 210
enabling invalid SPI recovery, 31 1
enabling IPv4 source guard on port, 238
enabling IPv6 ND attack defense source MAC
packet consistency check, 267
enabling IPv6 source guard on port, 240
enabling MFF, 275
enabling MFF periodic gateway probe, 276
enabling password control, 287
enabling port security, 170
enabling port security trap, 173
enabling portal authentication, 133
enabling RADIUS client service, 31
enabling RADIUS trap function, 30
enabling SSH server function, 203
enabling SSH SFTP server function, 204
enabling
SYN
cookie
protection), 235
enabling user profile, 189
establishing SSH SFTP server connection, 212
periodic
online
user
feature
(TCP
attack
establishing SSH Stelnet server connection, 210
exporting host public key in specific format to a file,
193
exporting local host public key, 192
FIPS configuration, 297
generating local DSA key pair (SSH), 203
generating local RSA key pair (SSH), 203
ignoring server authorization information (port
security), 175
implementing ACL-based IPsec, 302
importing
public key from public key file, 197
importing SSH client public key from file, 206
logging off portal users, 141
maintaining IKE, 323
maintaining IPsec, 312
maintaining password control, 291
maintaining portal, 141
managing public keys, 191
recording host public key information, 193
saving host public key to a file, 193
setting 802.1X authentication timeout timers, 89
setting 802.1X port authorization state, 87
setting a local user password in interactive mode,
291
setting HWTACACS packet shared keys, 35
setting HWTACACS traffic statistics units, 36
setting HWTACACS username format, 36
setting max number 802.1X authentication request
attempts, 88
setting max number 802.1X concurrent users on
port, 88
setting max number IPv4 source guard entries on
port, 240
setting max number IPv6 source guard entries on
port, 242
setting max number MAC addresses on port (port
security), 170
setting
max
transmission attempts, 25
setting max number online portal users, 135
setting password control global parameters, 288
setting password control local user parameters,
290
setting password control user group parameters,
289
setting port security mode, 171
setting RADIUS packet shared keys, 23
setting RADIUS server status, 25
setting RADIUS supported server type, 24
setting RADIUS timer, 28
348
number
of
RADIUS
request

Advertisement

Table of Contents
loading

Table of Contents