User Guide

Contents
13
Catalyst 6500 Series Switch Cisco IOS Software Configuration Guide—Release 12.1 E
78-14099-04
Configuring CBAC on Catalyst 6500 Series Switches 7
Configuring MAC Address-Based Traffic Blocking 8
Configuring VLAN ACLs 8
Understanding VACLs 8
Configuring VACLs 11
Configuring VACL Logging 17
Configuring TCP Intercept 18
Configuring Unicast Reverse Path Forwarding 19
Understanding Unicast RPF Support 19
Configuring Unicast RPF 19
Enabling Self-Pinging 19
Configuring the Unicast RPF Checking Mode 20
Configuring Unicast Flood Protection 21
Configuring MAC Move Notification 22
CHAPTER
24 Configuring Denial of Service Protection 1
DoS Protection Overview 1
Configuring DoS Protection 2
Supervisor Engine DoS Protection 2
Security ACLs 2
QoS ACLs 4
Forwarding Information Base Rate-Limiting 5
ARP Throttling 5
Monitoring Packet Drop Statistics 6
CHAPTER
25 Configuring IEEE 802.1X Port-Based Authentication 1
Understanding 802.1X Port-Based Authentication 1
Device Roles 2
Authentication Initiation and Message Exchange 3
Ports in Authorized and Unauthorized States 4
Supported Topologies 4
Default 802.1X Port-Based Authentication Configuration 5
802.1X Port-Based Authentication Guidelines and Restrictions 6
Configuring 802.1X Port-Based Authentication 7
Enabling 802.1X Port-Based Authentication 7
Configuring Switch-to-RADIUS-Server Communication 8
Enabling Periodic Reauthentication 10
Manually Reauthenticating the Client Connected to a Port 11