Network Security Features of HP-UX 11i v1 and 11i v2
Network Security Features of HP-UX 11i
Page 7
Switch
HP-UX AAA
Server
Access
Point
Notebook
Printer
Remote Client
Desktop
PDA
LDAP Server
RADIUS/AAA
802.1X/EAP
IPSec/VPN
Enterprise Internet
LDAP
Firewall/VPN
Gateway
Figure 1: Using the HP-UX AAA Server for Authentication and Accounting at Network Access Points
The HP-UX AAA Server can be downloaded from Software Depot.
HP-UX AAA Server (RADIUS) Features
The key features and benefits of HP-UX AAA Server are:
• Standards Support: Supports all key standards and proprietary methods for controlling network
access.
• LDAP and Oracle® Integration: Supports user authentication against LDAP Version 3 compliant
directories and Oracle databases in addition to local authentication methods.
• EAP support for securing Wireless LAN: Extensible Authentication Protocol (EAP) support allows
enterprises and access providers to control authentication of users attaching to a LAN via a wireless
LAN Access point or hard-wired switch. Supported EAP methods include protected EAP (PEAP),
Transport Layer Security (TLS), Tunneled Transport Layer Security (TTLS), Generic Token Card
(GTC), and Message Digest 5 (MD5).
• Cisco Lightweight Extensible Authentication Protocol Support (LEAP): Supports Cisco
proprietary key exchange method between Cisco Aironet 802.11x Wireless LAN clients and access
points.
• Multi-vendor RADIUS client support: A multi-vendor dictionary with attribute mapping supports
leading NAS vendors, and allows new vendors and features to be easily added.