Reference Guide

Table Of Contents
AAA Authentication..............................................................................................................................................693
Configuration Task List for AAA Authentication............................................................................................ 693
AAA Authorization................................................................................................................................................ 695
Privilege Levels Overview.............................................................................................................................. 696
Configuration Task List for Privilege Levels................................................................................................... 696
RADIUS................................................................................................................................................................. 701
RADIUS Authentication and Authorization.................................................................................................... 701
Configuration Task List for RADIUS............................................................................................................... 702
TACACS+.............................................................................................................................................................. 705
Configuration Task List for TACACS+.............................................................................................................705
TACACS+ Remote Authentication and Authorization.................................................................................... 706
Command Authorization.................................................................................................................................708
Protection from TCP Tiny and Overlapping Fragment Attacks.............................................................................708
Enabling SCP and SSH..........................................................................................................................................708
Using SCP with SSH to Copy a Software Image............................................................................................ 709
Secure Shell Authentication.......................................................................................................................... 710
Troubleshooting SSH......................................................................................................................................712
Telnet.................................................................................................................................................................... 713
VTY Line and Access-Class Configuration........................................................................................................... 713
VTY Line Local Authentication and Authorization..........................................................................................713
VTY Line Remote Authentication and Authorization...................................................................................... 714
VTY MAC-SA Filter Support............................................................................................................................714
45 Service Provider Bridging....................................................................................................717
VLAN Stacking......................................................................................................................................................717
Important Points to Remember...................................................................................................................... 718
Configure VLAN Stacking...............................................................................................................................719
Creating Access and Trunk Ports.................................................................................................................. 719
Enable VLAN-Stacking for a VLAN.................................................................................................................720
Configuring the Protocol Type Value for the Outer VLAN Tag.......................................................................720
Configuring FTOS Options for Trunk Ports..................................................................................................... 720
Debugging VLAN Stacking.............................................................................................................................721
VLAN Stacking in Multi-Vendor Networks.....................................................................................................722
VLAN Stacking Packet Drop Precedence............................................................................................................ 726
Enabling Drop Eligibility..................................................................................................................................726
Honoring the Incoming DEI Value.................................................................................................................. 727
Marking Egress Packets with a DEI Value.....................................................................................................727
Dynamic Mode CoS for VLAN Stacking................................................................................................................728
Mapping C-Tag to S-Tag dot1p Values.......................................................................................................... 729
Layer 2 Protocol Tunneling...................................................................................................................................730
Implementation Information...........................................................................................................................732
Enabling Layer 2 Protocol Tunneling..............................................................................................................733