HP-UX AAA Server A.07.01 Release Notes

QXCR1000583869 Session control for tunneled Extensible Authentication Protocol
(EAP) authentications is based on Inner-Identity.
Prior to the A.07.01 release, session control was based on
Outer-Identity.
QXCR1000583867 The HP-UX AAA Server A.07.01 generates only one session for
a tunneled-EAP (PEAP or TTLS) authentication, based on
Inner-Identity.
Prior to the A.07.01 release, the HP-UX AAA Server generated
two sessions for a tunneled EAP (PEAP or TTLS), based on
Inner-Identity and Outer-Identity.
QXCR1000742538 HP-UX AAA Server A.07.01 checks for the Check-items in the
incoming Access-Request, and replies with the Reply-items in
the outgoing Access-Accept response for the EAP Authentication
methods.
Prior to A.07.01 release, the HP-UX Server ignored the
Check-items and Reply-items for the EAP Authenticaiton
methods.
Obsolescence of Features
The HP-UX AAA Server A.07.01 release supports the following authentication methods:
EAP-LEAP and EAP-PEAP.
Simple legacy Oracle authentication module and the highly flexible SQL Access.
RSA SecurID and the emerging Open AuTHentication (OATH) standards-based
One-Time Password (OTP).
Starting with the next release of the HP-UX AAA Server, only the new authentication
methods will be supported. Other authentication methods are deprecated in this release
and will be obsolete in the next release. They are as follows:
EAP-LEAP
The EAP-LEAP authentication method is deprecated in this release and will be obsolete
in the next release of the HP-UX AAA Server. The EAP-LEAP authentication method
is replaced by the new EAP-PEAP authentication method. HP recommends that you
use EAP-PEAP in place of EAP-LEAP for improved security. Unlike EAP-LEAP,
EAP-PEAP supports mutual authentication and uses an encrypted tunnel to transmit
the user's credentials. For more information on EAP-PEAP, see the Securing LAN Access
With EAP chapter in the HP-UX AAA Server A.07.01 Administrator’s Guide at: http://
www.docs.hp.com/en/internet.html#AAA%20Server%20%28RADIUS%29.
Obsolescence of Features 11