HP-UX AAA Server A.08.02 Release Notes
1 HP-UX AAA Server A.08.02 Release Notes
This document discusses the most recent product information on HP-UX AAA Server A.08.02. HP-UX
AAA Server A.08.02 is supported on HP-UX 11i v3 (B.11.31).
This document addresses the following topics:
• “Product overview” (page 4)
• “What is new in this version” (page 6)
• “Defects fixed in HP-UX AAA Server A.08.02” (page 8)
• “Known problems and limitations in HP-UX AAA Server A.08.02” (page 8)
• “Supplicant support and interoperability” (page 10)
• “OATH-compliant OTP generators and interoperability” (page 11)
• “Product documentation” (page 11)
• “Installation corequisites” (page 12)
• “Availability in native languages” (page 14)
Product overview
The HP-UX AAA Server utilizes the industry standard Remote Authentication Dial-In User Service
(RADIUS) protocol and Extensible Authentication Protocol (EAP) to provide standards-based user
authentication, authorization, and accounting services to network devices and software applications.
The HP-UX AAA Server can be utilized for securing wired and wireless LAN access, provide
authentication and accounting for Virtual Private Network (VPN) gateways, firewalls and other
network devices, and to enhance the security of RADIUS-enabled software applications in Enterprise
and Service Provider environments.
Product features
The HP-UX AAA Server includes the following features:
• EAP-MS-CHAPv2 for OTP Authentication: EAP-MS-CHAPv2 module supports Open Authentication
(OATH) standards-based One-Time Password (OTP) authentication.
• Common Logfile: Supports having Common Logfile for multiple instances of the HP-UX AAA
servers on a single host.
• Log-Level Filters: Enables you to control the amount of information logged in the HP-UX AAA
serverlog file. Logging can be controlled by configuring filters based on the RADIUS message
type.
• Arithmetic Expression: Supports arithmetic expressions such as addition, subtraction, negation,
multiplication, and integer division in the policy files.
• String Concatenation: Supports string concatenation in policy files
• Dynamic Authorization: Enables the HP-UX AAA Server to act as a client to send RADIUS
server-initiated Disconnect and Change-of-Authorization (CoA) messages and assimilate
responses as specified in RFC 5176.
• EAP-SIM and EAP-AKA authentication methods: Supports Extensible Authentication Protocol
(EAP) for authentication and session key distribution using Global System for Mobile
Communications (GSM) Subscriber Identity Module (SIM) as specified in RFC 4186 and using
Universal Mobile Telecommunications System (UMTS) Authentication Key Agreement (AKA)
as specified in RFC 4187 in 3rd Generation Partnership Project (3GPP) network environment.
• Scalability and High Availability: Supports running and managing a group of multiple HP-UX
AAA Servers on a single host to process multiple RADIUS requests simultaneously to offer
4 HP-UX AAA Server A.08.02 Release Notes