Contents
viii
Catalyst 3550 Multilayer Switch Software Configuration Guide
78-11194-09
Configuring a Message-of-the-Day Login Banner 7-19
Configuring a Login Banner 7-20
Managing the MAC Address Table 7-20
Building the Address Table 7-21
MAC Addresses and VLANs 7-21
Default MAC Address Table Configuration 7-22
Changing the Address Aging Time 7-22
Removing Dynamic Address Entries 7-23
Configuring MAC Address Notification Traps 7-23
Adding and Removing Static Address Entries 7-25
Configuring Unicast MAC Address Filtering 7-26
Displaying Address Table Entries 7-27
Optimizing System Resources for User-Selected Features 7-27
Using the Templates 7-29
CHAPTER
8 Configuring Switch-Based Authentication 8-1
Preventing Unauthorized Access to Your Switch 8-1
Protecting Access to Privileged EXEC Commands 8-2
Default Password and Privilege Level Configuration 8-2
Setting or Changing a Static Enable Password 8-3
Protecting Enable and Enable Secret Passwords with Encryption 8-4
Disabling Password Recovery 8-5
Setting a Telnet Password for a Terminal Line 8-6
Configuring Username and Password Pairs 8-7
Configuring Multiple Privilege Levels 8-8
Setting the Privilege Level for a Command 8-8
Changing the Default Privilege Level for Lines 8-9
Logging into and Exiting a Privilege Level 8-10
Controlling Switch Access with TACACS+ 8-10
Understanding TACACS+ 8-10
TACACS+ Operation 8-12
Configuring TACACS+ 8-12
Default TACACS+ Configuration 8-13
Identifying the TACACS+ Server Host and Setting the Authentication Key 8-13
Configuring TACACS+ Login Authentication 8-14
Configuring TACACS+ Authorization for Privileged EXEC Access and Network Services 8-16
Starting TACACS+ Accounting 8-17
Displaying the TACACS+ Configuration 8-17