Contents
viii
Cisco ME 3800X and 3600X Switch Software Configuration Guide
OL-23400-01
RADIUS Operation 8-19
Configuring RADIUS 8-19
Default RADIUS Configuration 8-20
Identifying the RADIUS Server Host 8-20
Configuring RADIUS Login Authentication 8-22
Defining AAA Server Groups 8-24
Configuring RADIUS Authorization for User Privileged Access and Network Services 8-26
Starting RADIUS Accounting 8-27
Configuring Settings for All RADIUS Servers 8-28
Configuring the Switch to Use Vendor-Specific RADIUS Attributes 8-28
Configuring the Switch for Vendor-Proprietary RADIUS Server Communication 8-29
Configuring RADIUS Server Load Balancing 8-30
Displaying the RADIUS Configuration 8-30
Controlling Switch Access with Kerberos 8-31
Understanding Kerberos 8-31
Kerberos Operation 8-33
Authenticating to a Boundary Switch 8-33
Obtaining a TGT from a KDC 8-34
Authenticating to Network Services 8-34
Configuring Kerberos 8-34
Configuring the Switch for Local Authentication and Authorization 8-35
Configuring the Switch for Secure Shell 8-36
Understanding SSH 8-36
SSH Servers, Integrated Clients, and Supported Versions 8-36
Limitations 8-37
Configuring SSH 8-37
Configuration Guidelines 8-37
Setting Up the Switch to Run SSH 8-37
Configuring the SSH Server 8-38
Displaying the SSH Configuration and Status 8-39
Configuring the Switch for Secure Copy Protocol 8-39
Information About Secure Copy 8-40
CHAPTER
9 Configuring Interfaces 9-1
Understanding Interface Types 9-1
NNI Port Type 9-2
Port-Based VLANs 9-2
Switch Ports 9-2
Access Ports 9-3