
Security Access
● Supported security access features................................................................................ 19
● Securing access methods............................................................................................... 20
● Remote access to management function restrictions..................................................... 23
● Passwords used to secure access..................................................................................31
● Local user accounts........................................................................................................ 35
● TACACS and TACACS+ security....................................................................................42
● RADIUS security............................................................................................................. 58
● SSL security.................................................................................................................... 73
● Authentication-method lists............................................................................................. 75
● TCP Flags - edge port security....................................................................................... 78
Supported security access features
Lists security access features supported on FastIron devices.
The following table lists the individual Brocade FastIron switches and the security access features they
support. These features are supported in the Layer 2 and Layer 3 software images, except where
explicitly noted.
Feature ICX 6430 ICX 6450 FCX ICX 6610 ICX 6650 FSX 800
FSX 1600
ICX 7750
Authentication, Authorization and
Accounting (AAA): RADIUS, TACACS
ACACS+
08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 08.0.10
AAA support for console commands 08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 08.0.10
Restricting remote access to
management functions
08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 08.0.10
Disabling TFTP access 08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 08.0.10
Using ACLs to restrict remote access 08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 08.0.10
Local user accounts 08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 08.0.10
Local user passwords 08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 08.0.10
SSL security 08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 08.0.10
AAA authentication-method lists 08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 08.0.10
Packet filtering on TCP flags 08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 No 08.0.10
This chapter explains how to secure access to management functions on a Brocade device.
FastIron Ethernet Switch Security Configuration Guide
19
53-1003088-03
Comentarios a estos manuales