Many
Manuals
search
Categories
Brands
Home
ProCurve
Network switches
6200yl
User's Guide
ProCurve 6200yl User's Guide Page 40
Download
Share
Sharing
Add to my manuals
Print
Page
/
596
Table of contents
BOOKMARKS
Rated
.
/ 5. Based on
customer reviews
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
393
394
395
396
397
398
399
400
401
402
403
404
405
406
407
408
409
410
411
412
413
414
415
416
417
418
419
420
421
422
423
424
425
426
427
428
429
430
431
432
433
434
435
436
437
438
439
440
441
442
443
444
445
446
447
448
449
450
451
452
453
454
455
456
457
458
459
460
461
462
463
464
465
466
467
468
469
470
471
472
473
474
475
476
477
478
479
480
481
482
483
484
485
486
487
488
489
490
491
492
493
494
495
496
497
498
499
500
501
502
503
504
505
506
507
508
509
510
511
512
513
514
515
516
517
518
519
520
521
522
523
524
525
526
527
528
529
530
531
532
533
534
535
536
537
538
539
540
541
542
543
544
545
546
547
548
549
550
551
552
553
554
555
556
557
558
559
560
561
562
563
564
565
566
567
568
569
570
571
572
573
574
575
576
577
578
579
580
581
582
583
584
585
586
587
588
589
590
591
592
593
594
595
596
1-14
Security Overview
Identity-Driven Manager (IDM)
— This page is intentionally unused —
1
2
...
35
36
37
38
39
40
41
42
43
44
45
...
595
596
ProCurve Switches
1
ProCurve
3
Series 5400zl Switches
3
Series 3500yl Switches
3
6200yl Switch
3
Hewlett-Packard Company
4
3 Virus Throttling
7
4 Web and MAC Authentication
8
5 TACACS+ Authentication
8
13 Configuring Port-Based and
17
16 Key Management System
20
Product Documentation
21
Software Feature Index
22
Intelligent Edge Software
23
Features
23
Security Overview
27
Introduction
28
Switch Access Security
29
Note on SNMP
31
Access to
31
Secure File Transfers
32
Authorized IP Managers
33
Secure Management VLAN
33
RADIUS Authentication
33
Network Security Features
34
Secure Shell (SSH)
35
Traffic/Security Filters
36
Advanced Threat Detection
38
Identity-Driven Manager (IDM)
39
Menu: Setting Passwords
45
Front-Panel Security
48
When Security Is Important
49
Front-Panel Button Functions
50
Reset Button
51
Password Recovery
58
[Y] (for “Yes”)
59
[N] (for “No”)
59
Password Recovery Process
60
Virus Throttling
61
Features and Benefits
64
General Operation
65
Application Options
66
Operating Rules
67
Sensitivity
71
Configuring and Applying
79
Connection-Rate ACLs
79
Connection-Rate ACL Operation
80
Source IP Address Criteria
81
Criteria
83
Applying Connection-Rate ACLs
86
Client Options
95
General Features
95
Authenticator Operation
97
MAC-based Authentication
99
Web and MAC Authentication
100
Terminology
101
Operating Rules and Notes
102
Authentication
104
RADIUS Server
106
Overview
109
Configuration Overview
123
Client Status
131
TACACS+ Authentication
133
Terminology Used in TACACS
135
Applications:
135
General System Requirements
137
Note on
139
Privilege Levels
139
Before You Begin
140
Configuration
141
Server Contact Configuration
142
Caution Regarding
145
Login Primary
145
Encryption Keys
148
First-Choice TACACS+ Server
150
How Authentication Operates
152
Local Authentication Process
154
Using the Encryption Key
155
Access When Using TACACS+
156
Messages Related to TACACS+
157
Operation
157
Operating Notes
157
Contents
159
Accounting Services
162
Configuration MIB
162
You Want RADIUS To Protect
168
(hpSwitchAuth) is disabled
179
Commands Authorization Type
182
Configuring the RADIUS Server
184
Configuring RADIUS Accounting
190
Interim Updating Options
196
Viewing RADIUS Statistics
198
RADIUS Accounting Statistics
201
as both the primary
205
Configuring and Using
214
The Packet-filtering Process
222
■ vendor and ACL identifiers:
224
Configuration Notes
228
ACEs in the list
229
Event Log Messages
234
After Authenticating
235
Monitoring Shared Resources
235
Prerequisite for Using SSH
241
Public Key Formats
241
Host Public
248
Key for the
248
Bit Size
249
Exponent <e>
249
Modulus <n>
249
Client Contact Behavior
251
■ Execute no ip ssh
252
Note on Port
253
Public-Key Authentication
258
Bit Size Exponent <e>
259
Note on Public
261
Key Index Number
262
Prerequisite for Using SSL
269
Password Button
272
Security Tab
272
Generate New Key
275
Enter certificate Arguments
275
Generate New Certificate
275
Show host certificate command
276
[SSL] button
278
Web browser interface
279
Browser Contact Behavior
281
Common Errors in SSL setup
285
Access Control Lists (ACLs)
287
Static ACLS
291
Dynamic Port ACLs
291
RACL Applications
302
VACL Applications
304
Multiple ACLs on an Interface
306
ACL Operation
312
Planning an ACL Application
316
Security
318
Access Control Entry (ACE)
323
IP Address Mask
324
ACL Configuration Structure
328
Standard ACL Structure
329
ACL Configuration Factors
332
General ACE Rules
335
Configuring Standard ACLs
337
10-14 on page 10-55
345
Configuring Extended ACLs
346
[Shift] [?] key combination
355
On an Interface
367
Deleting an ACL
371
Editing an Existing ACL
372
Sequence Numbering in ACLs
373
Attaching a Remark to an ACE
378
Operating Notes for Remarks
381
Display an ACL Summary
383
Indicates whether the ACL
387
The Offline Process
390
■ ID: “LIST-20-IN”
391
Enable ACL “Deny” Logging
395
ACL Logging Operation
396
General ACL Operating Notes
399
DHCP Snooping
403
Enabling DHCP Snooping
404
The DHCP Binding Database
411
Enabling Debug Logging
412
Operational Notes
412
Log Messages
413
Dynamic ARP Protection
415
Configuring Trusted Ports
417
Examples
425
Filter Types and Operation
431
Source-Port Filters
432
Named Source-Port Filters
434
[ index ]
436
Static Multicast Filters
443
Protocol Filters
444
* ), indicating that the
447
Editing a Source-Port Filter
448
Filter Indexing
450
Configuring Port-Based and
453
User Authentication Methods
456
as defined in the
459
802.1X standard
459
VLAN Membership Priority
462
Access Control
466
Authenticators
468
Based Authentication
470
Wake-on-LAN Traffic
476
802.1X Open VLAN Mode
478
VLAN Membership Priorities
479
Unauthorized-Client VLANs
485
Configure Port-Security
494
Port-Security
495
Other Switches
496
Supplicant Port Configuration
498
Statistics, and Counters
500
■ Unauth-VLAN ID (if any)
501
■ Auth-VLAN ID (if any)
501
■ The switch reboots
507
Affects VLAN Operation
508
After the 802.1X session
511
< port-number >:
513
Port Security
518
Eavesdrop Protection
519
Blocking Unauthorized Traffic
519
Trunk Group Exclusion
520
Planning Port Security
521
Port Security Display Options
522
Configuring Port Security
526
listing
529
use this command syntax:
529
Retention of Static Addresses
532
MAC Lockdown
537
MAC Lockdown Operating Notes
540
Deploying MAC Lockdown
541
MAC Lockout
545
< = 1024 16 16
546
1025-2048 8 8
546
Port Security and MAC Lockout
547
Security Features
548
Alert Flags
548
Send-Disable
550
Resetting Alert Flags
551
Yes” for the port on which
552
Using Authorized IP Managers
559
Access Levels
561
Stations
562
Managers
563
Building IP Masks
567
IP Entry
568
Key Management System
573
Numerics
581
2 – Index
582
See also port based
582
Index – 3
583
See sequence, ACEs
583
4 – Index
584
Index – 5
585
6 – Index
586
Index – 7
587
8 – Index
588
Index – 9
589
10 – Index
590
Index – 11
591
12 – Index
592
Index – 13
593
14 – Index
594
5991-3828
596
Comments to this Manuals
No comments
Publish
Related products and manuals for Network switches ProCurve 6200yl
Network switches ProCurve 8200zl User Manual
(12 pages)
Network switches ProCurve 5400zl User Manual
(33 pages)
Network switches ProCurve 5400zl Specifications
(765 pages)
Network switches ProCurve 5300xl Specifications
(36 pages)
Network switches ProCurve 2900 User's Guide
(104 pages)
Network switches ProCurve 8200zl Installation Guide
(12 pages)
Network switches ProCurve 6200yl Specifications
(65 pages)
Network switches ProCurve 6400cl User's Guide
(718 pages)
Network switches ProCurve 3500yl User Manual
(15 pages)
Network switches ProCurve 2510G Series Technical Information
(392 pages)
Network switches ProCurve 2610 Series Specifications
(176 pages)
Network switches ProCurve 2510G Series Technical Information
(244 pages)
Network switches ProCurve 8212zl Manual
(667 pages)
Network switches ProCurve 2610-PWR User Manual
(16 pages)
Network switches ProCurve 6200yl User Manual
(14 pages)
Network switches ProCurve 3500yl User Manual
(16 pages)
Network switches ProCurve 5300xl Specifications
(108 pages)
Network switches ProCurve 5400zl Specifications
(110 pages)
Network switches ProCurve 8200zl User's Guide
(360 pages)
Network switches ProCurve 8200zl User's Guide
(195 pages)
Print document
Print page 40
Comments to this Manuals