Users Guide

Table Of Contents
Chapter 17: UFT modes............................................................................................................ 1000
Configure UFT modes...................................................................................................................................................1001
IPv6 extended prefix routes................................................................................................................................. 1002
UFT commands..............................................................................................................................................................1002
hardware forwarding-table mode........................................................................................................................1002
hardware l3 ipv6-extended-prefix ......................................................................................................................1003
show hardware forwarding-table mode.............................................................................................................1003
show hardware forwarding-table mode all........................................................................................................1004
show hardware l3.................................................................................................................................................... 1004
Chapter 18: Security................................................................................................................ 1005
User configuration........................................................................................................................................................ 1005
Role-based access control....................................................................................................................................1005
Unknown user role.................................................................................................................................................. 1006
Enable user lockout.................................................................................................................................................1006
Linuxadmin user configuration............................................................................................................................. 1007
Simple password check..........................................................................................................................................1008
Password strength..................................................................................................................................................1008
Obscure passwords................................................................................................................................................ 1009
Privilege levels ........................................................................................................................................................ 1009
User configuration commands.............................................................................................................................. 1012
AAA....................................................................................................................................................................................1019
AAA authentication..................................................................................................................................................1019
AAA with RADIUS authentication.........................................................................................................................1021
AAA with TACACS+ authentication....................................................................................................................1023
Enable AAA accounting..........................................................................................................................................1024
AAA commands........................................................................................................................................................1025
SSH server.......................................................................................................................................................................1031
SSH commands........................................................................................................................................................1032
Limit concurrent login sessions..................................................................................................................................1040
Limit concurrent login session commands......................................................................................................... 1041
Virtual terminal line ACLs............................................................................................................................................. 1041
VTY commands........................................................................................................................................................ 1042
Enable login statistics...................................................................................................................................................1043
Login statistics commands....................................................................................................................................1043
Audit log...........................................................................................................................................................................1044
Audit log commands............................................................................................................................................... 1045
Restrict SNMP access................................................................................................................................................. 1047
Bootloader protection.................................................................................................................................................. 1047
Boot protect commands........................................................................................................................................ 1047
X.509v3 certificates.....................................................................................................................................................1049
X.509v3 concepts................................................................................................................................................... 1049
Public key infrastructure....................................................................................................................................... 1050
Manage CA certificates......................................................................................................................................... 1050
Certificate revocation............................................................................................................................................ 1052
Request and install host certificates.................................................................................................................. 1053
Self-signed certificates .........................................................................................................................................1057
Security profiles.......................................................................................................................................................1059
Contents
17