Owners Manual

Modifying Global Parameters...........................................................................................................788
Enabling SNMP Traps for Root Elections and Topology Changes........................................... 789
Modifying Interface Parameters.......................................................................................................789
Enabling SNMP Traps for Root Elections and Topology Changes................................................. 790
Influencing RSTP Root Selection..................................................................................................... 790
Configuring an EdgePort..................................................................................................................790
Configuring Fast Hellos for Link State Detection.............................................................................791
46 Software-Defined Networking (SDN).........................................................793
47 Security............................................................................................................ 794
AAA Accounting................................................................................................................................ 794
Configuration Task List for AAA Accounting..............................................................................794
AAA Authentication...........................................................................................................................796
Configuration Task List for AAA Authentication.........................................................................797
Obscuring Passwords and Keys....................................................................................................... 799
AAA Authorization............................................................................................................................ 800
Privilege Levels Overview...........................................................................................................800
Configuration Task List for Privilege Levels...............................................................................800
RADIUS..............................................................................................................................................806
RADIUS Authentication...............................................................................................................806
Configuration Task List for RADIUS........................................................................................... 807
TACACS+...........................................................................................................................................810
Configuration Task List for TACACS+........................................................................................ 810
TACACS+ Remote Authentication..............................................................................................812
Command Authorization............................................................................................................ 813
Protection from TCP Tiny and Overlapping Fragment Attacks.......................................................813
Enabling SCP and SSH...................................................................................................................... 813
Using SCP with SSH to Copy a Software Image........................................................................ 814
Removing the RSA Host Keys and Zeroizing Storage ...............................................................815
Configuring When to Re-generate an SSH Key ........................................................................ 815
Configuring the SSH Server Key Exchange Algorithm...............................................................816
Configuring the HMAC Algorithm for the SSH Server............................................................... 816
Configuring the SSH Server Cipher List......................................................................................817
Secure Shell Authentication........................................................................................................817
Troubleshooting SSH..................................................................................................................820
Telnet.................................................................................................................................................821
VTY Line and Access-Class Configuration.......................................................................................821
VTY Line Local Authentication and Authorization..................................................................... 821
VTY Line Remote Authentication and Authorization.................................................................822
VTY MAC-SA Filter Support........................................................................................................ 823
Role-Based Access Control..............................................................................................................823