Cisco Systems 2940 Switch User Manual


 
Contents
viii
Catalyst 2940 Switch Software Configuration Guide
78-15507-02
Configuring TACACS+ Authorization for Privileged EXEC Access and Network Services 7-15
Starting TACACS+ Accounting 7-16
Displaying the TACACS+ Configuration 7-16
Controlling Switch Access with RADIUS 7-16
Understanding RADIUS 7-17
RADIUS Operation 7-18
Configuring RADIUS 7-19
Default RADIUS Configuration 7-19
Identifying the RADIUS Server Host 7-19
Configuring RADIUS Login Authentication 7-22
Defining AAA Server Groups 7-24
Configuring RADIUS Authorization for User Privileged Access and Network Services 7-26
Starting RADIUS Accounting 7-27
Configuring Settings for All RADIUS Servers 7-28
Configuring the Switch to Use Vendor-Specific RADIUS Attributes 7-28
Configuring the Switch for Vendor-Proprietary RADIUS Server Communication 7-29
Displaying the RADIUS Configuration 7-30
Configuring the Switch for Local Authentication and Authorization 7-31
CHAPTER
8 Configuring 802.1X Port-Based Authentication 8-1
Understanding 802.1X Port-Based Authentication 8-1
Device Roles 8-2
Authentication Initiation and Message Exchange 8-3
Ports in Authorized and Unauthorized States 8-4
Supported Topologies 8-4
Using 802.1X with Voice VLAN Ports 8-5
Configuring 802.1X Authentication 8-6
Default 802.1X Configuration 8-6
802.1X Configuration Guidelines 8-8
Upgrading from a Previous Software Release 8-8
Enabling 802.1X Authentication 8-9
Configuring the Switch-to-RADIUS-Server Communication 8-10
Enabling Periodic Re-Authentication 8-11
Manually Re-Authenticating a Client Connected to a Port 8-12
Changing the Quiet Period 8-12
Changing the Switch-to-Client Retransmission Time 8-13
Setting the Switch-to-Client Frame-Retransmission Number 8-14