Security
Secure Sensitive Data Management
Cisco Sx350, SG350X, SG350XG, Sx550X & SG550XG Series Managed Switches, Firmware Release 2.2.5.x 308
16
 
STEP  3 Select Authorization to enable both authentication and authorization of the user by the list of 
methods described below. If the field is not selected, only authentication is performed. If 
Authorization is enabled, the read/write privileges of users are checked. This privilege level is 
set in the User Accounts page.
STEP  4 Use the arrows to move the authentication method between the Optional Methods column 
and the Selected Methods column. The first method selected is the first method that is used.
• RADIUS—User is authorized/authenticated on a RADIUS server. You must have 
configured one or more RADIUS servers. For the RADIUS server to grant access to the 
web-based configuration utility, the RADIUS server must return cisco-avpair = 
shell:priv-lvl=15.
• TACACS+—User authorized/authenticated on the TACACS+ server. You must have 
configured one or more TACACS+ servers.
• None—User is allowed to access the device without authorization/authentication.
• Local—Username and password are checked against the data stored on the local device. 
These username and password pairs are defined in the User Accounts page. 
NOTE The Local or None authentication method must always be selected last. All 
authentication methods selected after Local or None are ignored. 
STEP  5 Click Apply. The selected authentication methods are associated with the access method.
Secure Sensitive Data Management
See Security: Secure Sensitive Data Management.
SSL Server
This section describes the Secure Socket Layer (SSL) feature.
It covers the following topics:
• SSL Overview
• SSL Server Authentication Settings