Switch Features 59
For information about configuring access and authentication profiles, see 
"Configuring Authentication, Authorization, and Accounting" on page 175.
Password-Protected Management Access
Access to the Web, CLI, and SNMP management interfaces is password 
protected, and there are no default users on the system.
For information about configuring local user accounts, see "Configuring 
Authentication, Authorization, and Accounting" on page 175.
Strong Password Enforcement
The Strong Password feature enforces a baseline password strength for all 
locally administered users. Password strength is a measure of the effectiveness 
of a password in resisting guessing and brute-force attacks.  The strength of a 
password is a function of length, complexity and randomness.  Using strong 
passwords lowers overall risk of a security breach. 
For information about configuring password settings, see "Configuring 
Authentication, Authorization, and Accounting" on page 175.
TACACS+ Client
The switch has a TACACS+ client. TACACS+ provides centralized security 
for validation of users accessing the switch. TACACS+ provides a centralized 
user management system while still retaining consistency with RADIUS and 
other authentication processes.
For information about configuring TACACS+ client settings, see 
"Configuring Authentication, Authorization, and Accounting" on page 175.
RADIUS Support
The switch has a Remote Authentication Dial In User Service (RADIUS) 
client and can support up to 32 named authentication and accounting 
RADIUS servers. The switch also supports RADIUS Attribute 4, which is the 
configuration of a NAS-IP address. You can also configure the switch to 
accept RADIUS-assigned VLANs.
For information about configuring RADIUS client settings, see "Configuring 
Authentication, Authorization, and Accounting" on page 175.