INDEX
802.1X 177, 180, 181, 182, 183, 185, 186, 205, 210
authenticator PAEs 180
configuring 186
default settings 185
description 177
enabling feature 186
example configuration 210
guidelines 183
licensing requirements 183
limitations 183
MAC authenication bypass 181
multiple host support 182
prerequisites 183
single host support 182
supported topologies 182
verifying configuration 205
802.1X authentication 178, 180, 192, 202
authorization states for ports 180
enabling RADIUS accounting 202
initiation 178
manually initializing 192
802.1X reauthentication 204
setting maximum retry count on interfaces 204
802.1X supplicants 192
manually reauthenticating 192
A
aaa accounting default 11
aaa accounting default group 27
aaa accounting default local 27
aaa accounting dot1x default group 203
aaa authentication dot1x default group 187, 188
aaa authentication login {mschap | mschapv2} enable 25, 26
aaa authentication login ascii-authentication 88, 89
aaa authentication login chap enable 24
aaa authentication login console 11, 16, 17, 18
aaa authentication login console group 16, 17, 18
aaa authentication login console local 16, 17, 18
aaa authentication login console none 16, 17, 18
aaa authentication login default 11
aaa authentication login error-enable 21
aaa authorization {commands | config-commands} {console | default}
{group} 91
aaa authorization {group | local} 121, 122
aaa authorization {ssh-certificate | ssh-publickey} 121, 122
aaa authorization default 121, 122
aaa authorization ssh-certificate default 89, 90
aaa group server ldap 113, 114
aaa group server radius 49
aaa group server tacacs+ 78
aaa user default-role 20
absolute end 281, 282
absolute start 281, 282
accept-lifetime 426
acllog match-log-level 262, 264
action {drop | forward | redirect} 298, 299
authentication 178
802.1X 178
authentication (bind-first | compare} 113, 114
authenticator PAEs 180, 190
creating on an interface 190
description 180
removing from an interface 190
B
BGP 440
using with Unicast RPF 440
C
chgrp 129
chown 129
cipher-suite 509, 510
class 475
class class-default 475
class insert-before 475
class-map 469
class-map type control-plane {match-all | match-any} 473, 474, 481,
482, 483, 484
clear access-list ipsg stats 410
clear accounting log 34
clear copp statistics 489
clear hardware rate-limiter {all | access-list-log | bfd | exception | fex |
layer-3 glean | layer-3 multicast local-groups |
span-egress} 498
clear hardware rate-limiter module 498
clear ip access-list counters 269
clear ip arp inspection log 399
Cisco Nexus 9000 Series NX-OS Security Configuration Guide, Release 9.x
IN-1