Contents
OmniSwitch AOS Release 6 Switch Management Guide September 2009 ix
Creating a User ..............................................................................................................8-10
Removing a User ....................................................................................................8-10
User-Configured Password ....................................................................................8-10
Configuring Password Policy Settings ..........................................................................8-12
Setting a Minimum Password Size .........................................................................8-12
Configuring the Username Password Exception ....................................................8-12
Configuring Password Character Requirements ....................................................8-13
Configuring Password Expiration ..........................................................................8-13
Default Password Expiration ...........................................................................8-13
Specific User Password Expiration .................................................................8-14
Configuring the Password History .........................................................................8-14
Configuring the Minimum Age for a Password .....................................................8-14
Configuring Global User Lockout Settings ...................................................................8-15
Configuring the User Lockout Window .................................................................8-15
Configuring the User Lockout Threshold Number ................................................8-15
Configuring the User Lockout Duration Time .......................................................8-16
Manually Locking and Unlocking User Accounts .................................................8-16
Configuring Privileges for a User .................................................................................8-17
Setting Up SNMP Access for a User Account ..............................................................8-18
SNMP Access Without Authentication/Encryption ...............................................8-18
SNMP Access With Authentication/Encryption ....................................................8-19
Removing SNMP Access From a User ..................................................................8-19
Setting Up End-User Profiles ........................................................................................8-20
Creating End-User Profiles ....................................................................................8-21
Setting Up Port Ranges in a Profile .......................................................................8-21
Setting Up VLAN Ranges in a Profile ...................................................................8-21
Associating a Profile With a User ..........................................................................8-22
Removing a Profile From the Configuration ..........................................................8-22
Verifying the User Configuration .................................................................................8-23
Chapter 9 Managing Switch Security ........................................................................................9-1
In This Chapter ................................................................................................................9-1
Switch Security Specifications ........................................................................................9-2
Switch Security Defaults .................................................................................................9-2
Switch Security Overview ...............................................................................................9-3
Authenticated Switch Access ..........................................................................................9-4
AAA Servers—RADIUS or LDAP ..........................................................................9-4
Authentication-only—ACE/Server ..........................................................................9-4
Interaction With the User Database .........................................................................9-5
ASA and Authenticated VLANs ..............................................................................9-5
Configuring Authenticated Switch Access .....................................................................9-6
Quick Steps for Setting Up ASA ....................................................................................9-7
Setting Up Management Interfaces for ASA ..................................................................9-9
Enabling Switch Access .........................................................................................9-10