Chapter 20

Security

Configuration

Guide

Security Overview

The SSR provides security features that help control access to the SSR and filter traffic going through the SSR. Access to the SSR can be controlled by:

Enabling RADIUS

Enabling TACACS

Enabling TACACS Plus

Password authentication

Traffic filtering on the SSR enables:

Layer-2 security filters - Perform filtering on source or destination MAC addresses.

Layer-3/4 Access Control Lists - Perform filtering on source or destination IP address, source or destination TCP/UDP port, TOS or protocol type for IP traffic. Perform filtering on source or destination IPX address, or source or destination IPX socket. Perform access control to services provided on the SSR, for example, Telnet server and HTTP server.

Note: Currently, Source Filtering is available on SSR WAN cards; however, application must take place on the entire WAN card.

SmartSwitch Router User Reference Manual

275

Page 301
Image 301
Cabletron Systems 9032578-05 manual Chapter Security Configuration Guide, Security Overview