Product manual
Example: aaa authentication
If you already configured local passwords on the switch, but want RADIUS to protect primary Telnet
and SSH access without allowing a secondary Telnet or SSH access option (the switch's local
passwords), type the following commands:
Example: aaa authentication port-access eap-radius
Configure the switch for 802.1X authentication using an EAP-RADIUS server:
ProCurve(cong)# aaa authentication port-access eap-radius
Example: aaa port-access authenticator
Configure ports A10 - A20 as 802.1X authenticator ports:
ProCurve(cong)# aaa port-access authenticator a10-a20
Example: aaa port-access authenticator active
Activate 802.1X port-access on ports you have configured as authenticators:
ProCurve(cong)# aaa port-access authenticator active
Example: aaa port-access authenticator auth-vid
Configure ports A10 - A20 to use VLAN 81 as the Authorized-Client VLAN:
ProCurve(cong)# aaa port-access authenticator e a10-a20 auth-vid 81
Example: aaa port-access authenticator unauth-vid
Configure ports A10 - A20 to use VLAN 80 as the Unauthorized-Client VLAN:
ProCurve(cong)# aaa port-access authenticator e a10-a20 unauth-vid 80
COMMAND DETAILS
secondary (p. 47)initialize (p. 35)accounting (p. 26)
secret (p. 49)login (p. 35)active (p. 27)
server-timeout (p. 49)logoff-period (p. 36)addr-format (p. 27)
25© 2008 Hewlett-Packard Development Company, L.P.
aaaCommand Line Interface Reference Guide