CHAPTER 3
Preventing Unauthorized Access 17
Finding Feature Information 17
Preventing Unauthorized Access 17
CHAPTER 4
Controlling Switch Access with Passwords and Privilege Levels 19
Finding Feature Information 19
Restrictions for Controlling Switch Access with Passwords and Privileges 19
Information About Passwords and Privilege Levels 20
Default Password and Privilege Level Configuration 20
Additional Password Security 20
Password Recovery 21
Terminal Line Telnet Configuration 21
Username and Password Pairs 21
Privilege Levels 22
How to Control Switch Access with Passwords and Privilege Levels 22
Setting or Changing a Static Enable Password 22
Protecting Enable and Enable Secret Passwords with Encryption 24
Disabling Password Recovery 26
Setting a Telnet Password for a Terminal Line 27
Configuring Username and Password Pairs 29
Setting the Privilege Level for a Command 31
Changing the Default Privilege Level for Lines 33
Logging into and Exiting a Privilege Level 34
Monitoring Switch Access 35
Configuration Examples for Setting Passwords and Privilege Levels 35
Example: Setting or Changing a Static Enable Password 35
Example: Protecting Enable and Enable Secret Passwords with Encryption 35
Example: Setting a Telnet Password for a Terminal Line 36
Example: Setting the Privilege Level for a Command 36
Additional References 36
CHAPTER 5
Configuring TACACS+ 39
Finding Feature Information 39
Prerequisites for TACACS+ 39
Catalyst 2960-X Switch Security Configuration Guide, Cisco IOS Release 15.0(2)EX
iv OL-29048-01
Contents