9-9
Using Passwords and To Protect Against Unauthorized Access
Authentication for Central Control of Switch Access Security
Usi
n
g P
a
sswor
ds and
TA
C
A
CS+
in the Switch 4108GL manages authentication of logon attempts
through either the Console port or Telnet. uses an authentication
hierarchy consisting of (1) remote passwords assigned in a server
and (2) local passwords configured on the switch. That is, with
configured, the switch first tries to contact a designated server for
authentication services. If the switch fails to connect to any server,
it defaults to its own locally assigned passwords for authentication control if
it has been configured to do so. For both Console and Telnet access you can
configure a login (read-only) and an enable (read/write) privilege level access.
N o t e s R e g a r d i n g S o f t w a r e R e l e a s e G . 0 1 .
xx
Software release G.01.
xx
for the Switch 4108GL enables authenti-
cation, which allows or denies access to a Switch 4108GL on the basis of
correct username/password pairs managed by the server, and to
specify the privilege level to allow if access is granted. This release does not
support authorization or accounting services.
In release G.01.
xx
, does not affect web browser interface access.
See "Controlling Web Browser Interface Access" on page 28.
Terminology Used in TACACS Applications:
■
NAS (Network Access Server):
This is an industry term for a
TACACS-aware device that communicates with a TACACS server for
authentication services. Some other terms you may see in literature
describing TACACS operation are
communication server
,
remote
access server
, or
terminal server
. These terms apply to a Switch
4108GL when is enabled on the switch (that is, when the
switch is TACACS-aware).
■
Server:
The server or management station configured as
an access control server for TACACS-enabled devices. To use
with the Switch 4108GL and any other TACACS-capable
devices in your network, you must purchase, install, and configure a
server application on a networked server or management
station in the network. The server application you install
will provide various options for access control and access notifica-
tions. For more on the services available to you, see the
documentation provided with the server application you
will use.
Summary of Contents for ProCurve 4108gl Bundle
Page 1: ...hp procurve switch 4108gl management and configuration guide www hp com go hpprocurve ...
Page 2: ......
Page 40: ...2 16 Using the Menu Interface Where To Go From Here Using the Menu Interface ...
Page 154: ...8 24 Time Protocols SNTP Messages in the Event Log Time Protocols ...
Page 350: ...14 44 Port Based Virtual LANs VLANs and GVRP GVRP Port Based Virtual LANs VLANs and GVRP ...
Page 383: ...16 13 Spanning Tree Protocol STP How STP Operates Spanning Tree Protocol STP ...
Page 384: ...16 14 Spanning Tree Protocol STP How STP Operates Spanning Tree Protocol STP ...
Page 442: ...18 30 Troubleshooting Restoring a Flash Image Troubleshooting ...
Page 466: ...B 6 MAC Address Management Determining MAC Addresses MAC Address Management ...
Page 470: ......
Page 481: ...Index 11 Index write memory effect on menu interface 2 13 X Xmodem OS download A 6 ...
Page 482: ......