HP-UX AAA Server A.08.00.01 Administrator's Guide
Group-Name
Can be any string value. Unlike other configuration-only
attributes, Group-Name initially appears in a user entry
as a reply item and would be used as a check item in a
policy definition by LDAP or a customized
authentication method.
Password
Specifies the value to compare to the User-Password
attribute value in the Access-Request or the user's input
in response to an Access-Challenge. The \ character must
not be used.
NOTE: The RADIUS protocol does not send clear text
passwords. Passwords are encrypted with the client and
server’s shared secret according to RFC 2865.
To specify an encrypted password you must follow the
syntax {Encrypt-type} Encryptd-password, where
Encrypt-type is the method used to encrypt the
password and Encryptd-password is the encrypted
password. Encrypt-type can be specified as:
• crypt
• md5
• x-nthash
• x-lmhash
Server-Name
The additional parameter, usually a DNS name or IP
address, required to perform the specified authentication
type.
User-Category
Can be any string value. Unlike other configuration-only
attributes, User-Category initially appears in a user entry
as a reply item and would be used as a check item in a
policy definition by LDAP or a customized
authentication method.
Xvalue
This attribute provides a means to pass an integer value
to an action.
Xstring
This attribute provides a means to pass a string value to
an action.
Local Authorization Service (LAS) Configuration
Some configuration-only attributes define information for authorization through the
servers LAS. To activate the features related to these attributes for users in a given
realm, you must enable session tracking for the user’s realm. A NULL realm entry will
540 Attribute-Value Pairs