Brocade Virtual ADX Administration Guide (Supporting ADX v03.1.00) User Manual

Page 7

Advertising
background image

Brocade Virtual ADX Administration Guide

vii

53-1003249-01

Configuring RADIUS security . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .85

RADIUS authentication, authorization and accounting. . . . . . .85
RADIUS NAS-Identifier . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .88
RADIUS configuration considerations. . . . . . . . . . . . . . . . . . . . .88
RADIUS configuration procedure . . . . . . . . . . . . . . . . . . . . . . . .89
Configuring Brocade-specific attributes on the RADIUS server 89
Identifying the RADIUS server to the Brocade Virtual ADX . . . .90
Specifying different servers for individual AAA functions . . . . . 91
Setting RADIUS parameters . . . . . . . . . . . . . . . . . . . . . . . . . . . . 91
Configuring authentication-method lists for RADIUS. . . . . . . . .92
Configuring RADIUS authorization . . . . . . . . . . . . . . . . . . . . . . . 94
Configuring RADIUS accounting . . . . . . . . . . . . . . . . . . . . . . . . .96
Configuring an interface as the source for all RADIUS packets 97
Displaying RADIUS configuration information . . . . . . . . . . . . . .98

Configuring authentication-method lists . . . . . . . . . . . . . . . . . . . . . .99

Configuration considerations for authentication-method lists100
Examples of authentication-method lists. . . . . . . . . . . . . . . . .100

Chapter 3

Role Based Management

Overview of Role Based Management. . . . . . . . . . . . . . . . . . . . . . .103

User requirements . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .104
Contexts . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .105

Configuring RBM . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .105

Create and set the context . . . . . . . . . . . . . . . . . . . . . . . . . . . .106
Remove the context . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .106
Create a role template . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .106
Associate roles with a template . . . . . . . . . . . . . . . . . . . . . . . .107
Inherit privileges from a template. . . . . . . . . . . . . . . . . . . . . . .107
Display the role and context . . . . . . . . . . . . . . . . . . . . . . . . . . .108

Integrating RBM with RADIUS and TACACS+ . . . . . . . . . . . . . . . . . .110

Configuring the Brocade Virtual ADX for AAA authentication .110
Configuring the AAA server to authenticate RBM
on a Brocade Virtual ADX . . . . . . . . . . . . . . . . . . . . . . . . . . . . .
111

Chapter 4

Securing SNMP Access

SNMP overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .113

Establishing SNMP community strings . . . . . . . . . . . . . . . . . . . . . .113

Encryption of SNMP community strings . . . . . . . . . . . . . . . . . .113
Adding an SNMP community string . . . . . . . . . . . . . . . . . . . . .113
Displaying the SNMP community strings . . . . . . . . . . . . . . . . .114

Advertising