Contents
x
Catalyst 3750 Switch Software Configuration Guide
OL-8550-02
Controlling Switch Access with RADIUS 9-17
Understanding RADIUS 9-18
RADIUS Operation 9-19
Configuring RADIUS 9-20
Default RADIUS Configuration 9-20
Identifying the RADIUS Server Host 9-20
Configuring RADIUS Login Authentication 9-23
Defining AAA Server Groups 9-25
Configuring RADIUS Authorization for User Privileged Access and Network Services 9-27
Starting RADIUS Accounting 9-28
Configuring Settings for All RADIUS Servers 9-29
Configuring the Switch to Use Vendor-Specific RADIUS Attributes 9-29
Configuring the Switch for Vendor-Proprietary RADIUS Server Communication 9-31
Displaying the RADIUS Configuration 9-31
Controlling Switch Access with Kerberos 9-32
Understanding Kerberos 9-32
Kerberos Operation 9-34
Authenticating to a Boundary Switch 9-34
Obtaining a TGT from a KDC 9-35
Authenticating to Network Services 9-35
Configuring Kerberos 9-35
Configuring the Switch for Local Authentication and Authorization 9-36
Configuring the Switch for Secure Shell 9-37
Understanding SSH 9-38
SSH Servers, Integrated Clients, and Supported Versions 9-38
Limitations 9-39
Configuring SSH 9-39
Configuration Guidelines 9-39
Setting Up the Switch to Run SSH 9-40
Configuring the SSH Server 9-41
Displaying the SSH Configuration and Status 9-41
Configuring the Switch for Secure Socket Layer HTTP 9-42
Understanding Secure HTTP Servers and Clients 9-42
Certificate Authority Trustpoints 9-42
CipherSuites 9-44