Deployment Guide

Allowing Access to Different Modes...................................................................................................................... 56
Applying a Privilege Level to a Username..............................................................................................................57
Applying a Privilege Level to a Terminal Line........................................................................................................57
Configuring Logging......................................................................................................................................................... 58
Audit and Security Logs.............................................................................................................................................58
Configuring Logging Format .............................................................................................................................60
Setting Up a Secure Connection to a Syslog Server................................................................................ 60
Log Messages in the Internal Buffer............................................................................................................................ 62
Disabling System Logging................................................................................................................................................62
Sending System Messages to a Syslog Server.......................................................................................................... 62
Configuring a UNIX System as a Syslog Server...................................................................................................62
Track Login Activity..........................................................................................................................................................63
Restrictions for Tracking Login Activity................................................................................................................ 63
Configuring Login Activity Tracking........................................................................................................................63
Display Login Statistics.............................................................................................................................................. 63
Limit Concurrent Login Sessions...................................................................................................................................65
Restrictions for Limiting the Number of Concurrent Sessions........................................................................ 65
Configuring Concurrent Session Limit................................................................................................................... 65
Enabling the System to Clear Existing Sessions..................................................................................................65
Enabling Secured CLI Mode............................................................................................................................................66
Changing System Logging Settings..............................................................................................................................67
Display the Logging Buffer and the Logging Configuration....................................................................................67
Configuring a UNIX Logging Facility Level..................................................................................................................68
Synchronizing Log Messages......................................................................................................................................... 69
Enabling Timestamp on Syslog Messages...................................................................................................................69
File Transfer Services.......................................................................................................................................................72
Enabling the FTP Server............................................................................................................................................ 73
Configuring FTP Server Parameters.......................................................................................................................73
Configuring FTP Client Parameters........................................................................................................................ 73
Terminal Lines.....................................................................................................................................................................74
Denying and Permitting Access to a Terminal Line............................................................................................. 74
Configuring Login Authentication for Terminal Lines......................................................................................... 75
Setting Timeout for EXEC Privilege Mode..................................................................................................................76
Using Telnet to get to Another Network Device....................................................................................................... 76
Lock CONFIGURATION Mode........................................................................................................................................77
Reloading the system........................................................................................................................................................77
Restoring the Factory Default Settings....................................................................................................................... 78
Restoring Factory Default Environment Variables.............................................................................................. 79
Viewing the Reason for Last System Reboot............................................................................................................ 80
Disabling Syslog Messages for SNMP Authentication Failure Events................................................................. 80
Chapter 5: 802.1X........................................................................................................................ 81
Port-Authentication Process..........................................................................................................................................82
EAP over RADIUS........................................................................................................................................................83
Configuring 802.1X............................................................................................................................................................84
Important Points to Remember..................................................................................................................................... 84
Enabling 802.1X................................................................................................................................................................. 85
Configuring dot1x Profile ................................................................................................................................................86
Configuring MAC addresses for a do1x Profile.......................................................................................................... 86
Configuring the Static MAB and MAB Profile ...........................................................................................................87
4
Contents