beautypg.com

H3C Technologies H3C S6300 Series Switches User Manual

Page 385

background image

370

AAA for SSH user,

47

AAA implementation,

7

AAA local user configuration,

18

AAA scheme configuration,

18

accounting server specification,

34

authentication server specification,

33

authorization server specification,

33

displaying,

38

HWTACACS/RADIUS differences,

7

maintaining,

38

outgoing packet source IP address,

35

packet exchange process,

7

protocols and standards,

13

real-time accounting timer,

36

scheme configuration,

32

scheme creation,

32

server quiet timer,

36

server response timeout timer

(response-timeout),

36

shared keys specification,

35

SSH user local authentication+HWTACACS
authorization+RADIUS accounting,

49

traffic statistics units,

35

troubleshooting,

60

username format,

35

Hypertext Transfer Protocol. Use

HTTP

I

identity

security IPsec IKE global identity information

configuration,

254

ignoring

port security server authorization

information,

151

IKE,

247

, See also

ISAKMP

configuration,

247

,

249

,

259

configuration (main mode/pre-shared key

authentication),

259

DH algorithm,

249

displaying,

258

DPD configuration,

256

FIPS compliance,

249

global identity information configuration,

254

identity authentication,

248

invalid SPI recovery,

257

IPsec configuration (IKE-based/direct),

228

IPsec configuration (IKE-based/template),

229

IPsec IKE-based tunnel for IPv4 packets

configuration,

241

IPsec negotiation mode,

219

IPsec policy configuration (IKE-based),

227

IPsec SA,

219

IPsec tunnel establishment,

221

keepalive function configuration,

255

keychain configuration,

253

maintaining,

258

NAT keepalive function configuration,

256

negotiation,

247

negotiation failure (no proposal or keychain

referenced correctly),

262

negotiation failure troubleshooting (no proposal

match),

261

PFS,

249

profile configuration,

250

proposal configuration,

252

protocols and standards,

249

SA max number set,

257

security mechanism,

248

SNMP notification,

258

troubleshooting,

261

IMC

security AAA RADIUS session-control feature,

46

implementing

security 802.1X H3C MAC-based access

control,

70

security 802.1X H3C port-based access control,

70

security AAA HWTACACS,

7

security AAA LDAP,

9

security AAA on device,

11

security AAA RADIUS,

2

security ACL-based IPsec,

221

,

222

security application-based IPsec,

221

security IPsec,

220

importing

security peer host public key from file,

178

security PKI certificate import/export,

206

security public key from file,

180

troubleshooting PKI CA certificate import
failure,

214

troubleshooting PKI local certificate import

failure,

214

initiating