HP-UX AAA Server A.08.02 Administrator's Guide

Environment Specific Security Procedures .........................................................................43
Using Secure Socket Layer (SSL) for Secured Remote Server Manager Administration.........43
Creating a Tomcat Identity Specifically for the HP-UX AAA Server ..................................44
Running the HP-UX AAA Server on Hosts with System Hardening Software.......................45
Running the HP-UX AAA Server as a Non-Root User......................................................45
Setting Up the HP-UX AAA Server to Start as Non-Root User After Reboot........................46
4 Enabling the HP-UX AAA Server for GUI-based Administration....................48
Accessing the Server Manager............................................................................................48
Starting and Stopping the RMI Objects............................................................................48
Starting and Stopping Tomcat.........................................................................................49
Testing the Installation ........................................................................................................49
To Test the Installation....................................................................................................49
Starting HP-UX AAA Servers Using Server Manager...............................................................50
AAA Server Start Options..............................................................................................51
Server Manager’s Reload Feature....................................................................................52
Starting HP-UX AAA Servers From the Command Line.............................................................52
Configuring the HP-UX AAA Server to Start Automatically Upon System Reboot ....................55
Stopping or Restarting HP-UX AAA Servers............................................................................55
Using Server Manager...................................................................................................55
From the Command Line.................................................................................................55
Adding an HP-UX AAA Server to Your Network.....................................................................55
II Configuring the HP-UX AAA Server Manager Using the Server Manager GUI
.................................................................................................................57
5 The HP-UX AAA Server Manager Interface...............................................60
Commonly Used Icons in the GUI.........................................................................................60
6 Managing HP-UX AAA Servers...............................................................62
Using the Server Connections Screen....................................................................................62
Adding a New Server Connection.......................................................................................62
Modifying Connection Attributes..........................................................................................63
Deleting a Server Connection..............................................................................................64
Managing Multiple Servers.................................................................................................64
Loading and Saving Your Configuration................................................................................65
Loading and Saving Your Configuration Using RMI Server..................................................65
Enhancing Loading and Saving Performance Using Secure Copy Protocol.............................66
Setting up Key-Based Authentication................................................................................67
Creating a Public-Private key set with ssh-keygen...........................................................67
Sharing the Public key with Remote Hosts.....................................................................67
Verifying Key-Based Authentication..................................................................................68
7 Configuring RADIUS Clients Using the Access Devices Screen.....................69
Navigating the Access Devices Screen..................................................................................69
Adding a RADIUS Client.....................................................................................................69
Modifying a RADIUS Client’s Properties................................................................................71
Deleting a RADIUS Client....................................................................................................71
8 Configuring Realms...............................................................................72
Using the Local Realms Screen.............................................................................................72
Adding a Realm................................................................................................................72
Modifying Realms..............................................................................................................74
Special Entries...................................................................................................................75
Deleting a Realm...............................................................................................................75
Configuring Realms for Authentication using an External Server...............................................76
Configuring Realms for Database Access via SQL..............................................................76
Configuring Realms for LDAP .........................................................................................77
4 Contents