SSH2
DSA challenge-response authentication 83
password authenticationSSH2
configuration 83
RSA challenge-response authentication 83
use with secure copy 93
SSH2 client
configuring public key authentication 97
displaying information 99
enabling 97
overview 96
using 98
SSH authentication
setting the number of retries 88
T
TACACS
authentication 44
enabling 48
TACACS+
accounting 45
accounting configuration 55
authorization 45
configuring authorization 53
prompts when server is unavailable 52
setting the key 49
specifying servers for individual AAA functions 49
TACACS and TACACS+
authentication, authorization, and accounting 42
configuration 47
configuration considerations 47
configuring an interface for all packets 56
configuring authentication-method lists 50
how they differ 42
identifying servers 48
security 42
setting optional parameters 49
setting the retransmission limit 50
TCP flags 76, 78
TCP flags and edge port security 135
Telnet
designated VLANs to Layer 2 switch 29
Test-Route
set ip next hop 147
U
user accounts
defining localmanagement privileges 35
local configuration 40
local with no passwords 40
local with unencrypted passwords 40
user authentication, deactivating 88
username
configuration 36
username> 296
V
VLAN
ip access-group 131
mac-vlan-permit 236
no webauth 310
source-guard enable 351
webauthcommand
webauth 295
W
Webauth
accounting 304
add mac 305
add mac duration | ethernet duration 305
attempt-max-num 306
authenticated-mac-age-time 309
auth-mode none 304
auth-mode passcode 300
auth-mode passcode flush-expired 302
auth-mode passcode generate 303
auth-mode passcode grace-period 302
auth-mode passcode length 300
auth-mode passcode log syslog | snmp-trap 302
auth-mode passcode refresh-type duration 300
auth-mode passcode refresh-type time 300
auth-mode passcode refresh-type time delete-all
300
auth-mode passcode resend-log 303
auth-mode passcode static command
394 FastIron Ethernet Switch Security Configuration Guide
53-1003088-03
Comentarios a estos manuales