Users Guide
Conguring RMON Collection Statistics...............................................................................................................703
Conguring the RMON Collection History........................................................................................................... 703
42 Rapid Spanning Tree Protocol (RSTP)..................................................................................................... 705
Protocol Overview......................................................................................................................................................... 705
Conguring Rapid Spanning Tree................................................................................................................................ 705
Related Conguration Tasks................................................................................................................................... 705
Important Points to Remember................................................................................................................................... 705
RSTP and VLT..........................................................................................................................................................706
Conguring Interfaces for Layer 2 Mode....................................................................................................................706
Enabling Rapid Spanning Tree Protocol Globally........................................................................................................706
Adding and Removing Interfaces.................................................................................................................................709
Modifying Global Parameters....................................................................................................................................... 709
Enabling SNMP Traps for Root Elections and Topology Changes..................................................................... 710
Modifying Interface Parameters................................................................................................................................... 710
Enabling SNMP Traps for Root Elections and Topology Changes............................................................................ 711
Inuencing RSTP Root Selection.................................................................................................................................. 711
Conguring an EdgePort................................................................................................................................................711
Conguring Fast Hellos for Link State Detection....................................................................................................... 712
43 Software-Dened Networking (SDN).......................................................................................................713
44 Security....................................................................................................................................................714
AAA Accounting..............................................................................................................................................................714
Conguration Task List for AAA Accounting.........................................................................................................714
AAA Authentication........................................................................................................................................................716
Conguration Task List for AAA Authentication................................................................................................... 717
Obscuring Passwords and Keys....................................................................................................................................719
AAA Authorization..........................................................................................................................................................719
Privilege Levels Overview........................................................................................................................................719
Conguration Task List for Privilege Levels..........................................................................................................720
RADIUS........................................................................................................................................................................... 724
RADIUS Authentication........................................................................................................................................... 724
Conguration Task List for RADIUS.......................................................................................................................725
TACACS+........................................................................................................................................................................728
Conguration Task List for TACACS+................................................................................................................... 728
TACACS+ Remote Authentication.........................................................................................................................729
Command Authorization......................................................................................................................................... 730
Protection from TCP Tiny and Overlapping Fragment Attacks................................................................................ 731
Enabling SCP and SSH.................................................................................................................................................. 731
Using SCP with SSH to Copy a Software Image.................................................................................................732
Removing the RSA Host Keys and Zeroizing Storage ........................................................................................733
Conguring When to Re-generate an SSH Key ..................................................................................................733
Conguring the SSH Server Key Exchange Algorithm....................................................................................... 733
Conguring the HMAC Algorithm for the SSH Server....................................................................................... 734
Conguring the HMAC Algorithm for the SSH Client.........................................................................................734
Conguring the SSH Server Cipher List............................................................................................................... 735
Contents
23










