Leaflet

110
OL-11615-01
• Community—Community ports communicate among themselves and with their promiscuous ports.
These interfaces are separated at Layer 2 from all other interfaces in other communities or isolated
ports within their PVLAN.
For more information about PVLANS on Catalyst 6500 Series switches running Cisco IOS, refer to the
following URL:
http://www.cisco.com/univercd/cc/td/doc/product/lan/cat6000/122sx/swcg/pvlans.htm
For more information about PVLANS on Catalyst 4500 Series switches running Cisco IOS, refer to the
following URL:
http://www.cisco.com/univercd/cc/td/doc/product/lan/cat4000/12_2_31s/conf/pvlans.htm
802.1X Authentication
802.1X Authentication is an available feature on Catalyst 6500 and 4500 Series switches that provides
advanced per port access control.
802.1X defines a client-server-based access control and authentication protocol that restricts
unauthorized devices from connecting to a LAN through publicly accessible ports. 802.1X controls
network access by creating two distinct virtual access points at each port. One access point is an
uncontrolled port, the other is a controlled port. All traffic through the single port is available to both
access points. 802.1X authenticates each user device that is connected to a switch port and assigns the
port to a VLAN before making available any services that are offered by the switch or the LAN. Until
the device is authenticated, 802.1X access control allows only Extensible Authentication Protocol over
LAN (EAPOL) traffic through the port to which the device is connected. After authentication is
successful, normal traffic can pass through the port. You can restrict the traffic in both directions, or you
can restrict just the incoming traffic.
For more information about 802.1X Authentication on Catalyst 6500 Series switches running Catalyst
OS, refer to the following URL:
http://www.cisco.com/univercd/cc/td/doc/product/lan/cat6000/sw_8_5/confg_gd/8021x.htm
For more information about 802.1X Authentication on Catalyst 6500 Series switches running Cisco IOS,
refer to the following URL:
http://www.cisco.com/univercd/cc/td/doc/product/lan/cat6000/122sx/swcg/dot1x.htm
For more information about 802.1X Authentication on Catalyst 4500 Series switches running Catalyst
OS, refer to the following URL:
http://www.cisco.com/univercd/cc/td/doc/product/lan/cat4000/8_3/configur/8021x.htm
For more information about 802.1X Authentication on Catalyst 4500 Series switches running Cisco IOS,
refer to the following URL:
http://www.cisco.com/univercd/cc/td/doc/product/lan/cat4000/12_2_31s/conf/dot1x.htm
Catalyst 6500 Security Service Modules
The Catalyst 6500 Series switches support a suite of advanced security modules, such as firewall, IPSec
VPNs, intrusion prevention, DoS mitigation, SSL, and gigabit network analysis. These modules are
described in this section.