Contents
ix
Catalyst2950 and Catalyst2955 Switch Software Configuration Guide
78-11380-10
Managing the MAC Address Table 8-21
Building the Address Table 8-22
MAC Addresses and VLANs 8-22
Default MAC Address Table Configuration 8-23
Changing the Address Aging Time 8-23
Removing Dynamic Address Entries 8-24
Configuring MAC Address Notification Traps 8-24
Adding and Removing Static Address Entries 8-26
Configuring Unicast MAC Address Filtering 8-27
Displaying Address Table Entries 8-28
Managing the ARP Table 8-28
CHAPTER
9Configuring Switch-Based Authentication 9-1
Preventing Unauthorized Access to Your Switch 9-1
Protecting Access to Privileged EXEC Commands 9-2
Default Password and Privilege Level Configuration 9-2
Setting or Changing a Static Enable Password 9-3
Protecting Enable and Enable Secret Passwords with Encryption 9-4
Disabling Password Recovery 9-5
Setting a Telnet Password for a Terminal Line 9-6
Configuring Username and Password Pairs 9-7
Configuring Multiple Privilege Levels 9-8
Setting the Privilege Level for a Command 9-8
Changing the Default Privilege Level for Lines 9-9
Logging into and Exiting a Privilege Level 9-10
Controlling Switch Access with TACACS+ 9-10
Understanding TACACS+ 9-10
TACACS+ Operation 9-12
Configuring TACACS+ 9-12
Default TACACS+ Configuration 9-13
Identifying the TACACS+ Server Host and Setting the Authentication Key 9-13
Configuring TACACS+ Login Authentication 9-14
Configuring TACACS+ Authorization for Privileged EXEC Access and Network Services 9-16
Starting TACACS+ Accounting 9-17
Displaying the TACACS+ Configuration 9-17
Controlling Switch Access with RADIUS 9-18
Understanding RADIUS 9-18
RADIUS Operation 9-19