HP-UX AAA Server A.08.01 release notes (T1428-90073, May 2010)
1 HP-UX AAA Server A.08.01 Release Notes
This document discusses the most recent product information on HP-UX AAA Server
A.08.01. HP-UX AAA Server A.08.01 is supported on HP-UX 11i v2 (B.11.23) and HP-UX
11i v3 (B.11.31).
This document addresses the following topics:
• “Product Overview” (page 5)
• “What is New in This Version” (page 8)
• “Fixes Included in the HP-UX AAA Server A.08.01” (page 9)
• “Known Problems and Limitations in HP-UX AAA Server A.08.01” (page 12)
• “Supplicant Support and Interoperability” (page 14)
• “OATH-Compliant OTP Generators and Interoperability” (page 15)
• “Product Documentation” (page 16)
• “Installation Corequisites” (page 17)
• “Availability in Native Languages” (page 19)
Product Overview
The HP-UX AAA Server utilizes the industry standard Remote Authentication Dial-In
User Service (RADIUS) protocol and Extensible Authentication Protocol (EAP) to
provide standards-based user authentication, authorization, and accounting services
to network devices and software applications.
The HP-UX AAA Server can be utilized for securing wired and wireless LAN access,
provide authentication and accounting for Virtual Private Network (VPN) gateways,
firewalls and other network devices, and to enhance the security of RADIUS-enabled
software applications in Enterprise and Service Provider environments.
Product Features
The HP-UX AAA Server includes the following features:
• Log-Level Filters: Enables you to control the amount of information logged in the
HP-UX AAA server log file. Logging can be controlled by configuring filters based
on the RADIUS message type.
• Arithmetic Expression: Supports arithmetic expressions such as addition,
subtraction, negation, multiplication, and integer division in the policy files.
• String Concatenation: Supports string concatenation in policy files.
• Dynamic Authorization: Enables the HP-UX AAA Server to act as a client to send
RADIUS server-initiated Disconnect and Change-of-Authorization (CoA)
messages and assimilate responses as specified in RFC 5176.
• EAP-SIM and EAP-AKA authentication methods: Supports Extensible
Authentication Protocol (EAP) for authentication and session key distribution
Product Overview 5