Chapter 63 Security
GS2220 Series User’s Guide
510
63.8 Se rvic e Ac c e ss C o ntro l
Service Access Control allows you to decide what services you may use to access the Switch. You may
also change the default service port and configure “trusted computers” for each service in the Re mo te
Ma na g e m e nt screen (discussed earlier). Click Se c urity > Ac c e ss C o ntro l > Se rvic e Ac c e ss Co ntrol to
view the screen as shown.
Fig ure 385 Security > Access Control > Service Access Control
The following table describes the fields in this screen.
Table 274 Security > Access Control > Service Access Control
LABEL DESC RIPTIO N
Services Services you may use to access the Switch are listed here.
Active Select this option for the corresponding services that you want to allow to access the Switch.
Service Port For Telnet, SSH, FTP, HTTP or HTTPS services, change the default service port by typing the new
port number in the Se rvic e Po rt field. If you change the default port number then you will have
to let people (who wish to use the service) know the new port number for that service.
Timeout Enter how many minutes (from 1 to 255) a management session can be left idle before the
session times out. After it times out you have to log in with your password again. Very long idle
timeouts may have security risks.
Login Timeout The Telnet or SSH server do not allow multiple user logins at the same time. Enter how many
seconds (from 30 to 300 seconds) a login session times out. After it times out you have to start
the login session again. Very long login session timeouts may have security risks.
For example, if User A attempts to connect to the Switch (through SSH), but during the login
stage, do not enter the user name and/or password, User B cannot connect to the Switch
(through SSH) before the Lo g in Time out for User A expires (default 150 seconds).
Apply Click Ap ply to save your changes to the Switch’s run-time memory. The Switch loses these
changes if it is turned off or loses power, so use the Sa ve link on the top navigation panel to
save your changes to the non-volatile memory when you are done configuring.
Cancel Click Ca nc e l to begin configuring this screen afresh.