Jump to content United States-English
HP.com Home Products and Services Support and Drivers Solutions How to Buy
» Contact HP
More options
HP.com home
Documentation Web Site: http://www.docs.hp.com: HP-UX AAA Server A.07.00Release Notes > Chapter 1 HP-UX AAA Server A.07.00 Release Notes

Product Overview

» 

Technical documentation

Complete book in PDF
» Feedback
Content starts here

 » Table of Contents

The HP-UX AAA Server utilizes the industry standard Remote Authentication Dial-In User Service (RADIUS) protocol and Extensible Authentication Protocol (EAP) to provide standards-based user authentication, authorization, and accounting services to network devices and software applications.The HP-UX AAA Server can be utilized for securing wired and wireless LAN access, provide authentication and accounting for Virtual Private Network (VPN) gateways, firewalls and other network devices, and to enhance the security of RADIUS enabled software applications in Enterprise and Service Provider environments.

Product Features

The HP-UX AAA Server includes the following features:

  • Common Database Interface: Supports HP-UX AAA Server interaction with supported databases via the SQL Access AATV and database client connector libraries.

  • EAP Support for Authenticated LAN Access: Secure wired and wireless LANs using Extensible Authentication Protocol (EAP) to support 802.1x enabled network access devices. EAP methods supported include PEAP, TTLS, TLS, LEAP, GTC, MSCHAPv2, and MD5.

  • Multi-Server Session Management: Supports user, group, or custom limits on concurrent logins to limit simultaneous sessions. Customizable shared session management for multiple HP-UX AAA Servers is supported via the SQL Access feature.

  • IP Address Management: DHCP interface for centralized administration of IP Address assignment.

  • IPv6 Support: Supports RADIUS IPv6 attributes with HP-UX 11i v1 (and subsequent releases). Also supports RADIUS communication over IPv6 transports with HP-UX 11i v2 (and subsequent releases).

  • SNMP Support: Effectively integrate and manage HP-UX AAA Servers with SNMP compliant network management tools.

  • LDAP Integration: Supports user profile storage and authentication using LDAP Version 3 compliant directories with request load balancing and failover.

  • Web-based Administration: The Server Manager web-based administration utility provides management and configuration of multiple HP-UX AAA Servers sharing a common configuration set.

  • Secure LAN Advisor: Utility inside the Server Manager administration tool to help plan, configure, and deploy authenticated LAN access via 802.1x and EAP.

  • Flexible Policy Management: Quickly and easily configure a variety a dynamic access control policies, including combinations of time, date, password expiration, or other user defined attributes.

  • Robust RADIUS Proxy Capabilities: Forwards authentication and accounting requests to other RADIUS servers by DNS, realm, or custom criteria with configurable retry and time-out periods.

  • Multi-vendor RADIUS Client Support: Includes pre-defined attribute mappings for leading network access vendors and a customizable vendor dictionary to support a wide range of RADIUS clients.

  • Flexible and Customized Session Logging: Customize session logs to capture the desired volume of session and accounting information. Session logging formats for Merit (default) and Livingston CDR Standard are included. Logging directly to the database, including shared accounting for multiple HP-UX AAA Servers is also supported via the SQL Access feature.

  • RADIUS Server Plug-in SDK: Server Plug-in Software Developer's Kit for customizing and extending the features of the AAA Server. For more information, email aaainfo@cup.hp.com.

  • IETF RADIUS RFC Standards: Supports the following IETF RFCs:

Table 1-1 Supported IEFT RFCs

RFC#

RFC Title

2284

PPP Extensible Authentication Protocol (EAP)
2619

RADIUS Authentication Server MIB

2621RADIUS Accounting Server MIB
2716PPP EAP-TLS Authentication Protocol
2865Remote Authentication Dial-In User Service (RADIUS)

2866

RADIUS Accounting

2867

RADIUS Accounting Modifications for Tunnel Protocol Support

2868

RADIUS Attributes for Tunnel Protocol Support

2869

RADIUS Extensions

3162

RADIUS and IPv6

 

Printable version
Privacy statement Using this site means you accept its terms Feedback to webmaster
© Hewlett-Packard Development Company, L.P.