Deployment Guide

Table Of Contents
Allowing Access to Different Modes...................................................................................................................... 56
Applying a Privilege Level to a Username..............................................................................................................57
Applying a Privilege Level to a Terminal Line........................................................................................................57
Configuring Logging......................................................................................................................................................... 58
Audit and Security Logs.............................................................................................................................................58
Configuring Logging Format .............................................................................................................................60
Setting Up a Secure Connection to a Syslog Server................................................................................ 60
Log Messages in the Internal Buffer............................................................................................................................. 61
Disabling System Logging................................................................................................................................................ 61
Sending System Messages to a Syslog Server.......................................................................................................... 62
Configuring a UNIX System as a Syslog Server...................................................................................................62
Track Login Activity..........................................................................................................................................................62
Restrictions for Tracking Login Activity................................................................................................................ 62
Configuring Login Activity Tracking........................................................................................................................62
Display Login Statistics.............................................................................................................................................. 63
Limit Concurrent Login Sessions...................................................................................................................................64
Restrictions for Limiting the Number of Concurrent Sessions........................................................................ 64
Configuring Concurrent Session Limit................................................................................................................... 65
Enabling the System to Clear Existing Sessions..................................................................................................65
Enabling Secured CLI Mode........................................................................................................................................... 66
Changing System Logging Settings..............................................................................................................................66
Display the Logging Buffer and the Logging Configuration....................................................................................67
Configuring a UNIX Logging Facility Level..................................................................................................................67
Synchronizing Log Messages......................................................................................................................................... 68
Enabling Timestamp on Syslog Messages...................................................................................................................69
File Transfer Services........................................................................................................................................................71
Enabling the FTP Server............................................................................................................................................ 72
Configuring FTP Server Parameters.......................................................................................................................72
Configuring FTP Client Parameters........................................................................................................................ 72
Terminal Lines.....................................................................................................................................................................73
Denying and Permitting Access to a Terminal Line............................................................................................. 73
Configuring Login Authentication for Terminal Lines..........................................................................................74
Setting Timeout for EXEC Privilege Mode..................................................................................................................75
Using Telnet to get to Another Network Device.......................................................................................................75
Lock CONFIGURATION Mode....................................................................................................................................... 76
Reloading the system....................................................................................................................................................... 76
Restoring the Factory Default Settings....................................................................................................................... 77
Restoring Factory Default Environment Variables.............................................................................................. 78
Viewing the Reason for Last System Reboot.............................................................................................................79
Disabling Syslog Messages for SNMP Authentication Failure Events..................................................................79
Chapter 5: 802.1X....................................................................................................................... 80
Port-Authentication Process...........................................................................................................................................81
EAP over RADIUS........................................................................................................................................................82
Configuring 802.1X............................................................................................................................................................83
Important Points to Remember..................................................................................................................................... 83
Enabling 802.1X..................................................................................................................................................................84
Configuring dot1x Profile ................................................................................................................................................85
Configuring MAC addresses for a do1x Profile.......................................................................................................... 85
Configuring the Static MAB and MAB Profile ...........................................................................................................86
4
Contents