Chapter 15 Configuring Security for the ML-Series Card

RADIUS Stand Alone Mode

 

Command

Purpose

 

 

 

Step 3 Router (config)# aaa authentication

Create a login authentication method list.

 

login {default list-name}method1

To create a default list that is used when a named list is not specified

 

[method2...]

 

in the login authentication command, use the default keyword

 

 

 

 

followed by the methods that are to be used in default situations. The

 

 

default method list is automatically applied to all ports.

 

 

For list-name, specify a character string to name the list you are

 

 

creating.

 

 

For method1..., specify the actual method the authentication

 

 

algorithm tries. The additional methods of authentication are used

 

 

only if the previous method returns an error, not if it fails.

 

 

Select one of these methods:

 

 

enable—Use the enable password for authentication. Before you

 

 

can use this authentication method, you must define an enable

 

 

password by using the enable password global configuration

 

 

command.

 

 

group radius—Use RADIUS authentication. Before you can use

 

 

this authentication method, you must configure the RADIUS

 

 

server. For more information, see the “Identifying the RADIUS

 

 

Server Host” section on page 15-9.

 

 

line—Use the line password for authentication. Before you can

 

 

use this authentication method, you must define a line password.

 

 

Use the password password line configuration command.

 

 

local—Use the local username database for authentication. You

 

 

must enter username information in the database. Use the

 

 

username name password global configuration command.

 

 

local-case—Use a case-sensitive local username database for

 

 

authentication. You must enter username information in the

 

 

database by using the username password global configuration

 

 

command.

 

 

none—Do not use any authentication for login.

 

 

 

Step 4 Router (config)# line [console tty

Enter line configuration mode, and configure the lines to which you want

 

vty] line-number [ending-line-number]

to apply the authentication list.

 

 

 

 

Cisco ONS 15310-CL and Cisco ONS 15310-MA Ethernet Card Software Feature and Configuration Guide R8.5

15-12

78-18133-01

Page 206
Image 206
Cisco Systems 15310-MA, 15310-CL manual Router config# aaa authentication, Router config# line console tty, 15-12

15310-CL, 15310-MA specifications

Cisco Systems has established itself as a leader in the networking domain, offering a wide array of solutions to meet the needs of modern businesses. Among its impressive product lineup are the Cisco 15310-CL and 15310-MA routers, designed to provide advanced network performance and reliability.

The Cisco 15310-CL is a versatile platform that primarily serves as a carrier-class router aimed at supporting high-speed data and voice services. It is built to handle the demands of large enterprises and service providers, offering a robust design that ensures maximum uptime and performance. One of its standout features is its modular architecture, which enables users to customize their configurations based on specific application needs. This scalability allows for future expansion without the need for a complete hardware overhaul.

Key technologies integrated into the Cisco 15310-CL include high-density Ethernet interfaces and a comprehensive suite of Layer 2 and Layer 3 protocol support. The device is capable of supporting multiple types of connections, including TDM, ATM, and Ethernet. This flexibility makes it an ideal choice for organizations that require seamless migration between various service types. Moreover, with features such as MPLS (Multiprotocol Label Switching) support and advanced Quality of Service (QoS) mechanisms, the router ensures that critical applications receive the necessary bandwidth and low latency required for optimal performance.

In contrast, the Cisco 15310-MA focuses on access solutions, providing a cost-effective entry point for businesses looking to enhance their network capabilities. It is well-suited for smaller offices or branch locations that need reliable connectivity without the expense and complexity associated with larger systems. The device supports a range of access methods and provides essential features like firewall capabilities, VPN support, and comprehensive security measures to protect sensitive data.

Both models benefit from Cisco's commitment to security and manageability, offering features like enhanced encryption protocols and user authentication mechanisms that help safeguard networks against threats. Additionally, they can be managed through Cisco’s intuitive software tools, simplifying configuration and monitoring tasks for IT administrators.

The Cisco 15310-CL and 15310-MA are ideal solutions for businesses seeking to enhance their network infrastructure, ensuring firms can keep pace with evolving technology demands while maintaining a focus on security and performance. Their combination of advanced features, modular capabilities, and robust support makes them valuable assets in the networking landscape.