5-7
Configuring the RADIUS Server—Without Identity Driven Manager
Overview
To configure proxying, you must log in as root to the NAC 800’s (CS’s or ES’s)
command line and edit this file:
/etc/raddb/proxy.conf
. See “Configure Authen-
tication to a Proxy RADIUS Server” on page 5-23.
Advantages of using a proxy server for at least some requests include:
■
You do not have to duplicate policies and accounts already stored on
another RADIUS server.
Disadvantages of using the proxy server include:
■
The existing RADIUS server must still handle authentication requests, so
the NAC 800 does not relieve that burden.
■
If your NAC 800 loses connectivity to the proxy server, it cannot authen-
ticate users.
Specifying multiple proxy servers mitigates this disadvantage.
■
Manual configuration creates opportunities for errors, as does manual
configuration of the local database (if necessary).
Summary of Contents for 800
Page 1: ...Configuration Guide www procurve com ProCurve Network Access Controller 800 ...
Page 2: ......
Page 3: ...ProCurve Network Access Controller 800 Configuration Guide April 2008 1 0 30398 ...
Page 74: ...1 62 Overview of the ProCurve NAC 800 Deployment Methods ...
Page 155: ...3 27 Initial Setup of the ProCurve NAC 800 System Settings ...
Page 194: ...3 66 Initial Setup of the ProCurve NAC 800 Digital Certificates ...
Page 336: ...6 8 Disabling Endpoint Integrity Testing Overview ...
Page 354: ...7 18 Redundancy and Backup for RADIUS Services Back Up Your NAC 800 Configuration ...
Page 380: ...A 26 Appendix A Glossary ...
Page 394: ...B 14 Appendix B Linux Commands Service Commands ...
Page 405: ......