6 – Index
erase certificate key pair … 7-9
erase host key pair … 7-9
generate CA-signed certificate … 7-15
generate host key pair … 7-9
generate self-signed … 7-12
generate self-signed certificate … 7-9, 7-12
generate server host certificate … 7-9
generating Host Certificate … 7-8
host key pair … 7-9
key, babble … 7-12
key, fingerprint … 7-12
man-in-the-middle spoofing … 7-18
OpenSSL … 7-2
operating notes … 7-6
operating rules … 7-6
passwords, assigning … 7-7
prerequisites … 7-5
remove self-signed certificate … 7-9
remove server host certificate … 7-9
reserved TCP port numbers … 7-20
root … 7-4
root certificate … 7-4
self-signed … 7-4, 7-12
self-signed certificate … 7-4, 7-9, 7-12
server host certificate … 7-9
SSL server … 7-3
SSLv3 … 7-2
stacking, security … 7-6
steps for configuring … 7-5
supported encryption methods … 7-3
terminology…7-3
TLSv1…7-2
troubleshooting, operating … 7-21
version … 7-2
zeroize … 7-10, 7-11
stacking
SSH security … 6-8
SSL security … 7-6
T
TACACS
aaa parameters … 4-13
authentication … 4-3
authentication process … 4-23
authentication, local … 4-25
authorized IP managers, effect … 4-28
authorized IP managers, precedence … 10-2
configuration, authentication … 4-11
configuration, encryption key … 4-22
configuration, server access … 4-18
configuration, timeout … 4-23
configuration, viewing … 4-10
encryption key … 4-6, 4-18, 4-19, 4-22
encryption key, general operation … 4-26
encryption key, global … 4-23
general operation … 4-2
IP address, server … 4-18
local manager password requirement … 4-29
messages … 4-28
NAS … 4-3
overview … 1-2
precautions … 4-5
preparing to configure … 4-8
preventing switch lockout … 4-18
privilege level code … 4-7
server access … 4-18
server priority … 4-21
setup, general … 4-5
show authentication … 4-8
single login … 4-16
single sign-on … 4-16
system requirements … 4-5
TACACS+ server … 4-3
testing … 4-5
timeout … 4-18
troubleshooting … 4-6
unauthorized access, preventing … 4-7
web access, controlling … 4-27
web access, no effect on … 4-5
tacacs-server … 4-8
TCP
reserved port numbers … 7-20
TLS
See RADIUS.
troubleshooting
authorized IP managers … 10-12
trunk
LACP, 802.1X not allowed … 8-17
See also LACP.
U
user name
cleared … 2-5