Chapter 25 AAA

The following table describes the labels in this screen.

Table 75 Advanced Application > AAA > AAA Setup

LABEL

DESCRIPTION

Authentication

Use this section to specify the methods used to authenticate users

 

accessing the Switch.

 

 

Privilege

These fields specify which database the Switch should use (first, second

Enable

and third) to authenticate access privilege level for administrator

 

accounts (users for Switch management).

 

Configure the access privilege of accounts via commands (See the CLI

 

Reference Guide) for local authentication. The TACACS+ and RADIUS

 

are external servers. Before you specify the priority, make sure you have

 

set up the corresponding database correctly first.

 

You can specify up to three methods for the Switch to authenticate the

 

access privilege level of administrators. The Switch checks the methods

 

in the order you configure them (first Method 1, then Method 2 and

 

finally Method 3). You must configure the settings in the Method 1

 

field. If you want the Switch to check other sources for access privilege

 

level specify them in Method 2 and Method 3 fields.

 

Select local to have the Switch check the access privilege configured for

 

local authentication.

 

Select radius or tacacs+ to have the Switch check the access privilege

 

via the external servers.

 

 

Login

These fields specify which database the Switch should use (first, second

 

and third) to authenticate administrator accounts (users for Switch

 

management).

 

Configure the local user accounts in the Access Control > Logins

 

screen. The TACACS+ and RADIUS are external servers. Before you

 

specify the priority, make sure you have set up the corresponding

 

database correctly first.

 

You can specify up to three methods for the Switch to authenticate

 

administrator accounts. The Switch checks the methods in the order you

 

configure them (first Method 1, then Method 2 and finally Method 3).

 

You must configure the settings in the Method 1 field. If you want the

 

Switch to check other sources for administrator accounts, specify them in

 

Method 2 and Method 3 fields.

 

Select local to have the Switch check the administrator accounts

 

configured in the Access Control > Logins screen.

 

Select radius to have the Switch check the administrator accounts

 

configured via your RADIUS server.

 

Select tacacs+ to have the Switch check the administrator accounts

 

configured via your TACACS+ server.

 

 

Authorization

Use this section to configure authorization settings on the Switch.

 

 

Type

Set whether the Switch provides the following services to a user.

 

Exec: Allow an administrator which logs in the Switch through Telnet

 

or SSH to have different access privilege level assigned via the

 

external server.

 

Dot1x: Allow an IEEE 802.1x client to have different bandwidth limit

 

or VLAN ID assigned via the external server.

 

 

262

MGS3700-12C User’s Guide

Page 262
Image 262
ZyXEL Communications metrogigabit switch manual 262, Method 2 and Method 3 fields

metrogigabit switch specifications

ZyXEL Communications has long been a prominent player in the networking hardware industry, providing innovative solutions that cater to both business and consumer markets. Among their notable offerings is the Metrogigabit switch, a device designed to meet the high demands of modern networks.

The ZyXEL Metrogigabit switch is primarily aimed at service providers and large enterprises, recognizing the need for seamless connectivity in an increasingly digital world. This switch is engineered for scalability, enabling users to effortlessly expand their network as their operational needs grow. With support for high bandwidth, it is particularly suited for environments requiring extensive data traffic management, such as data centers and campus networks.

One of the standout features of the Metrogigabit switch is its high-density gigabit Ethernet ports, which provide a backbone for reliable data transmission. The switch typically supports multiple 10G SFP+ uplinks, ensuring fast and efficient connections to upstream devices. This capability allows users to configure their networks to handle large volumes of data quickly and without interruption.

In terms of technology, the Metrogigabit switch leverages advanced Layer 2 and Layer 3 functionalities. This includes features such as VLAN support for traffic segmentation, Quality of Service (QoS) for prioritizing mission-critical applications, and robust multicast management. These capabilities contribute to enhanced network efficiency and performance.

Another characteristic that sets the ZyXEL Metrogigabit switch apart is its built-in security features. The device is designed to protect network integrity through mechanisms like port security, access control lists, and advanced authentication protocols. This focus on security helps prepare businesses to counteract potential threats in a landscape where cyber attacks are increasingly sophisticated.

Moreover, the switch is equipped with a user-friendly management interface, which simplifies the process of monitoring and configuring network settings. This is complemented by support for SNMP and RMON, allowing network administrators to leverage tools for effective performance monitoring.

In summary, the ZyXEL Metrogigabit switch is an essential tool for organizations seeking robust performance, reliability, and security in their networking infrastructure. With its high-density ports, flexible configuration options, and comprehensive management features, it provides a strong foundation for building efficient and scalable networks. Whether for service providers or enterprises, this switch stands out as a reliable choice in the fast-evolving technological landscape.