4 Contents
Single IP Management . . . . . . . . . . . . . . .   59
Automatic Firmware Update for New Stack 
Members
 . . . . . . . . . . . . . . . . . . . . . .   59
Master Failover with Transparent Transition
. . . .   60
Nonstop Forwarding on the Stack
 . . . . . . . . .   60
Hot Add/Delete and Firmware 
Synchronization
. . . . . . . . . . . . . . . . . . .   60
Security Features  . . . . . . . . . . . . . . . . . . . .   60
Configurable Access and Authentication 
Profiles
 . . . . . . . . . . . . . . . . . . . . . . .   60
Password-Protected Management Access  . . . .   61
Strong Password Enforcement
. . . . . . . . . . .   61
TACACS+ Client . . . . . . . . . . . . . . . . . . .   61
RADIUS Support  . . . . . . . . . . . . . . . . . .   61
SSH/SSL
. . . . . . . . . . . . . . . . . . . . . . .   62
Inbound Telnet Control . . . . . . . . . . . . . . .   62
Denial of Service . . . . . . . . . . . . . . . . . .   62
Port Protection
 . . . . . . . . . . . . . . . . . . .   62
Captive Portal . . . . . . . . . . . . . . . . . . . .   63
Dot1x Authentication (IEEE 802.1X) . . . . . . . . .   63
MAC-Based 802.1X Authentication
. . . . . . . . .   63
Dot1x Monitor Mode  . . . . . . . . . . . . . . . .   64
MAC-Based Port Security  . . . . . . . . . . . . .   64
Access Control Lists (ACL)
 . . . . . . . . . . . . .   64
Time-Based ACLs . . . . . . . . . . . . . . . . . .   65
IP Source Guard (IPSG)
. . . . . . . . . . . . . . .   65
DHCP Snooping
. . . . . . . . . . . . . . . . . . .   65
Dynamic ARP Inspection . . . . . . . . . . . . . .   65
Protected Ports (Private VLAN Edge). . . . . . . .   66
Switching Features  . . . . . . . . . . . . . . . . . . .   66
Flow Control Support (IEEE 802.3x)
. . . . . . . . .   66
Head of Line Blocking Prevention  . . . . . . . . .   66
Alternate Store and Forward (ASF)
. . . . . . . . .   66