Cisco Systems 2940 Switch User Manual


 
diskontcomputer.com
Firma Matzner Michael
Wiener Bundesstraße 38
4061 Pasching, Austria
:: Seite 4 von 12 :: Datenblatt zum Produkt Cisco 8 10/100 Ethernet Ports mit DC# 42410 ::
Fragen zu dem Produkt Cisco 8 10/100 Ethernet Ports? Kein Problem - wir helfen Ihnen per eMail (info@diskontcomputer.com) gerne weiter!
Den aktuellen Preis und Lagerstand finden Sie online auf http://www.diskontcomputer.com/Cisco_8_10_100_Ethernet_Ports_DC_42410.html
Cisco Systems, Inc.
All contents are Copyright © 1992–2003 Cisco Systems, Inc. All rights reserved. Important Notices and Privacy Statement.
Page 9 of 17
Security
Network Management Security
VLAN1 minimization
TACACS+ and RADIUS Authentication
Multilevel management levels
Allows VLAN1 to be disabled on any individual VLAN trunk link.
Terminal Access Controller Access Control System Plus (TACACS+)
and Remote Authentication Dial-In User Service (RADIUS)
authentication enable centralized control of switch administration
and management.
Allows for 15 levels of switch management authorization, ranging
from read-only to full read/write capabilities.
Network Edge Security
IEEE 802.1x
Voice VLAN 802.1x bypass
Private VLAN Edge
SPAN for IDS
MAC address notification
Port security
Autotrusted boundary
IGMP filtering
Dynamic VLAN Assignment
Allows dynamic, port-based security, providing user authentication.
Permits an IP phone to access the voice VLAN irrespective of the
authorized or unauthorized state of the port.
Provides security and isolation between switch ports, which helps
ensure that users cannot snoop on other users’ traffic.
Bidirectional data support on the Switched Port Analyzer (SPAN)
port allows Cisco Secure Intrusion Detection System (IDS) to take
action when an intruder is detected.
Allows administrators to be notified of users added to or removed
from the network. Good for tracking location of users or stolen
laptops.
Secures the access to an access or trunk port based on MAC
address. After a specific timeframe, the aging feature removes the
MAC address from the switch to allow another device to connect to
the same port.
Ability to trust the QoS priority settings if an IP phone ispresent and
to disable the trustsetting in the event that theIP phone is removed,
thereby preventing a malicious user from overriding prioritization
policies in the network.
Providesmulticast authentication byfiltering outnon-subscribers and
limits the number of concurrent multicast streams available per port.
Using VLAN Membership Policy Server (VMPS) client functionality,
ports can be assigned to VLANs based on the MAC address
connected to the port or a user login (using the CiscoWorks User
Registration Tool).
Table 1 Product Features and Benefits
Feature Benefit