Access Security Guide K/KA/KB.15.15

udp, 274
unauth-redirect, 80
unauth-vid, 77
uthentication request, 127
verify signature flash, 503
vlan, 277, 473
web-based, 86, 87, 88, 91, 92, 93, 94, 145, 174,
200, 201, 252
web-based config, 94
web-management ssl, 257
config file, 26
configuration
access method, 131
password security, 20
saving security credentials in multiple files, 51
username and password security, 20
username security, 20
configuring
connection-rate ACL, 59
connection-rate ACLs, 58
connection-rate filtering, 53, 70, 71
local password security, 21
MAC authentication
on switch, 72
per-port filtering, 55
RADIUS server, 89
TACACS server
single login, 124
web-based authentication, 83
connection-rate
log, 70
trap messages, 70
connection-rate ACL, 66
operating notes, 68
connection-rate filtering, 65
access-control list, 66
ACL
UDP/TCP options, 60
ACL:ACE mask, 69
ACL:application to port, 68
ACL:applying, 62
ACL:CIDR notation, 69
ACL:filter, 59, 60, 68
ACL:ignore, 59, 60, 68
ACL:implicit filter, 68, 69
ACL:operation, 68
ACL:source IP, 58
ACL:UDP/TCP, 59
ACL:UDP/TCP port data, 61
ACL:VLAN effect, 68
activation, 67
benefits, 65
block, 55
blocked host, 58, 66
blocked host, re-enable, 66, 71
blocked host;connection-rate filtering:host, unblocking,
58
blocked host;connection-rate filtering:re-enable blocked
host, 67
blocked host;connection-rate filtering:unblocking a host,
67
configuring per-port, 55
enabling, commands, 54
false positive, 66
guidelines, 70
high rate, legitimate;connection-rate filtering:sensitivity
level, changing, 58
high risk networks, 71
host, trusted, 58
ICMP ping message, 70
IPv6 not supported, 67
low risk networks, 70
notify and reduce, 66
notify only, 66
notify-only, 55
operating rules, 67
operation, 65
options, 65
penalty period, throttling, 55
port setting change, effect, 67
reboot, effect, 67
recommended application;connection-rate filtering:edge
of network, 70
sensitivity level, 66, 71
sensitivity level, command, 54
show, command, 53, 57
signature recognition, 65, 70
SNMP trap;connection-rate filtering:event log notice,
66
throttle, 55, 66
trigger, 67
trigger;connection-rate filtering:activation, 65
unblock command, 58, 71
VLAN delete, effect, 67
worm, 65, 70
connection-rate-configuration, 62
connnection-rate filtering
configuration, 53
console
access, 20
authorized IP managers, configuring, 413
console access
manager, 20
operator, 20
CoS
configuring for a RADIUS server
Class of Service, 210
override
(CoS) Priority assignments per-user on traffic inbound
to the switch, 211
RADIUS client, 201
viewing per-port config, 200
creating
password security, 20
credentials
manager and operator, 26
crypto
babble, 229
529