monitoring (continued)
IPv4 ACL configuration 179
multicast packets 193
ACLs on 193
multiple UDP ports 83
N
NetFlow 151
non-IP traffic filtering 168
O
operation of 43, 60
overview 17, 22, 41, 59
P
password and privilege level 20
password recovery disable considerations 26
passwords 17, 20, 22, 24, 26, 27, 29
default configuration 20
disabling recovery of 26
encrypting 24
overview 17
setting 22, 24, 27, 29
enable 22
enable secret 24
Telnet 27
with usernames 29
persistent self-signed certificate 126
port ACLs 142, 143
defined 142
types of 143
port security 237
port-based authentication 360, 369, 370, 371, 375, 387
configuration guidelines 370
configuring 371, 375
RADIUS server 371
RADIUS server parameters on the switch 375
default configuration 369
device roles 360
displaying statistics 387
enabling 375
802.1X authentication 375
switch 360
as proxy 360
preventing unauthorized access 17
privilege levels 22, 31, 33, 34
changing the default for lines 33
privilege levels (continued)
exiting 34
logging into 34
overview 22
setting a command with 31
Protecting Enable and Enable Secret Passwords with
Encryption 35
Example command 35
R
RADIUS 59, 60, 69, 83, 86, 88, 90, 92, 93, 95, 97, 101, 103
server load balancing 101
attributes 95, 97, 103
vendor-proprietary 97, 103
vendor-specific 95
configuring 83, 86, 90, 92, 93
accounting 92
authentication 86
authorization 90
communication, global 83, 93
communication, per-server 83
multiple UDP ports 83
default configuration 69
defining AAA server groups 88
identifying the server 83
key 83
limiting the services to the user 90
login 86
operation of 60
overview 59
suggested network environments 59
tracking services accessed by user 92
RADIUS Change of Authorization 61
Remote Authentication Dial-In User Service 59
See RADIUS 59
restricting access 17, 41, 59
overview 17
RADIUS 59
TACACS+ 41
RFC 5176 Compliance 63
routed packets, ACLs on 193
routed ports 237
router ACLs 142, 144
defined 142
types of 144
S
SCP 116
and SSH 116
Catalyst 2960-X Switch Security Configuration Guide, Cisco IOS Release 15.0(2)EX
IN-4 OL-29048-01
Index