HP ProCurve - 'Secure Management VLAN is configured'

Information

In cases where configuring a Secure Management VLAN is too restrictive, it is possible to identify up to 10 IP addresses or address groups that are allowed management access to the switch via the network.

Once configured, only those addresses identified will be granted access to the switch over the network.

Update MANAGEMENT_NETWORK and MANAGEMENT_NETWORK_ACCESS with the appropriate values for the local environment

Solution

The command to configure the management stations is as follows\n

ProCurve Switch(config)# ip authorized-manager <IP address> mask <mask bits> <operator | manager>\n

See Also

http://www.hp.com/rnd/pdfs/Hardening_ProCurve_Switches_White_Paper.pdf

Item Details

Audit Name: TNS HP ProCurve

Category: ACCESS CONTROL, CONFIGURATION MANAGEMENT, SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|AC-2, 800-53|CM-2, 800-53|CM-6, 800-53|SC-7

Plugin: HPProCurve

Control ID: 4128912f5ee14712678fdde388177d49331bdf6ee04e6867f64430d68675ec59