Contents
ix
Cisco IE 3000 Switch Software Configuration Guide
OL-13018-01
Configuring RADIUS 9-19
Default RADIUS Configuration 9-20
Identifying the RADIUS Server Host 9-20
Configuring RADIUS Login Authentication 9-23
Defining AAA Server Groups 9-25
Configuring RADIUS Authorization for User Privileged Access and Network Services 9-27
Starting RADIUS Accounting 9-28
Configuring Settings for All RADIUS Servers 9-29
Configuring the Switch to Use Vendor-Specific RADIUS Attributes 9-29
Configuring the Switch for Vendor-Proprietary RADIUS Server Communication 9-31
Displaying the RADIUS Configuration 9-31
Configuring the Switch for Local Authentication and Authorization 9-32
Configuring the Switch for Secure Shell 9-33
Understanding SSH 9-33
SSH Servers, Integrated Clients, and Supported Versions 9-33
Limitations 9-34
Configuring SSH 9-34
Configuration Guidelines 9-34
Setting Up the Switch to Run SSH 9-35
Configuring the SSH Server 9-36
Displaying the SSH Configuration and Status 9-37
Configuring the Switch for Secure Socket Layer HTTP 9-37
Understanding Secure HTTP Servers and Clients 9-37
Certificate Authority Trustpoints 9-38
CipherSuites 9-39
Configuring Secure HTTP Servers and Clients 9-40
Default SSL Configuration 9-40
SSL Configuration Guidelines 9-40
Configuring a CA Trustpoint 9-40
Configuring the Secure HTTP Server 9-41
Configuring the Secure HTTP Client 9-43
Displaying Secure HTTP Server and Client Status 9-43
Configuring the Switch for Secure Copy Protocol 9-44
Information About Secure Copy 9-44
CHAPTER
10 Configuring IEEE 802.1x Port-Based Authentication 10-1
Understanding IEEE 802.1x Port-Based Authentication 10-1
Device Roles 10-2
Authentication Process 10-3