Introduction to AAA Server
HP-UX AAA Server Features
Chapter 116
• Supports multiple user definition (realm) files keyed by realm (File type authentication)
• Authentication of users defined in an LDAP server (ProLDAP™ type authentication),
including support of {clear} indicator for clear text passwords
• Authentication of users defined in an ORACLE database
• UNIX bigcrypt() for users defined in a flat file or LDAP directory
• Load balancing and failover when authenticating users stored in an LDAP directory
server or Oracle database
Authorization Features
• Support of simple authorization policy through check and deny attribute-value pair items
specified in users files
• Support for definition of reply item attribute-value pairs in a users file
• Support of simple authorization policy through check and deny attribute-value pair items
specified in realm files (File type authentication) or an LDAP directory server (ProLDAP
type authentication)
• Support for definition of reply item attribute-value pairs through realm files, an LDAP
directory server, or an Oracle database
• Support of complex authorization policy construction through Boolean expressions with
attribute-value pair operands
• Supports simultaneous session limitation by user and by realm
Accounting Features
• Generates Merit or Livingston reference accounting detail files (accounting start and stop
RADIUS messages from network access server (NAS)), known as call detail records (CDR)
• Supports distributed accounting (proxy) by realms (RADIUS type authentication)
Admin and Debug Tools/Features
• Server Manager Graphical User Interface (GUI) for managing multiple AAA servers
• 802.1x Advisor HTML help system to quickly secure WLANs with the HP-UX AAA Server
• DHCP interface for the AAA Server to assign IP addresses generated by a DHCP server
• Support for Simple Network Management Protocol (SNMP)