HP-UX AAA Server A.08.02.10 Release Notes HP-UX 11i v3 (T1428-90092, November 2013)

1 HP-UX AAA Server A.08.02.10 Release Notes
This document discusses the most recent product information on HP-UX AAA Server A.08.02.10.
HP-UX AAA Server A.08.02.10 is supported on HP-UX 11i v3 (B.11.31).
This document addresses the following topics:
“Product overview (page 4)
“What is new in this version (page 6)
“Defects fixed in HP-UX AAA Server A.08.02.10” (page 7)
“Known problems and limitations in HP-UX AAA Server A.08.02.10” (page 7)
“Supplicant support and interoperability” (page 9)
“OATH-compliant OTP generators and interoperability” (page 10)
“Product documentation (page 10)
“Installation corequisites (page 11)
Availability in native languages (page 13)
Product overview
The HP-UX AAA Server utilizes the industry standard Remote Authentication Dial-In User Service
(RADIUS) protocol and Extensible Authentication Protocol (EAP) to provide standards-based user
authentication, authorization, and accounting services to network devices and software applications.
The HP-UX AAA Server can be utilized for securing wired and wireless LAN access, provide
authentication and accounting for Virtual Private Network (VPN) gateways, firewalls and other
network devices, and to enhance the security of RADIUS-enabled software applications in Enterprise
and Service Provider environments.
Product features
The HP-UX AAA Server includes the following features:
Log-Level Filters: Enables you to control the amount of information logged in the HP-UX AAA
serverlog file. Logging can be controlled by configuring filters based on the RADIUS message
type.
Arithmetic Expression: Supports arithmetic expressions such as addition, subtraction, negation,
multiplication, and integer division in the policy files.
String Concatenation: Supports string concatenation in policy files
Dynamic Authorization: Enables the HP-UX AAA Server to act as a client to send RADIUS
server-initiated Disconnect and Change-of-Authorization (CoA) messages and assimilate
responses as specified in RFC 5176.
EAP-SIM and EAP-AKA authentication methods: Supports Extensible Authentication Protocol
(EAP) for authentication and session key distribution using Global System for Mobile
Communications (GSM) Subscriber Identity Module (SIM) as specified in RFC 4186 and using
Universal Mobile Telecommunications System (UMTS) Authentication Key Agreement (AKA)
as specified in RFC 4187 in 3rd Generation Partnership Project (3GPP) network environment.
Scalability and High Availability: Supports running and managing a group of multiple HP-UX
AAA Servers on a single host to process multiple RADIUS requests simultaneously to offer
scalability and better performance. This feature also supports running and managing a group
of multiple HP-UX AAA servers on different hosts to offer high availability.
MS-CHAP v2 for OTP Authentication: MS-CHAP v2 module supports Open Authentication
(OATH) standards-based One-Time Password (OTP) authentication.
4 HP-UX AAA Server A.08.02.10 Release Notes