
Telnet Configurations for Different Authentication Modes
Table 2-7
Telnet configurations for different authentication modes
Authentication
Telnet configuration
Description
mode
Optional
Perform common
configuration
Perform common
Telnet configuration
None
Refer to
Table 2-6
.
Configure the
password for local
authentication
Configure the
password
Required
Password
Optional
Perform common
configuration
Perform common
Telnet configuration
Refer to
Table 2-6
.
Optional
Specify to
perform local
authentication or
remote RADIUS
authentication
AAA configuration
specifies whether to
perform local
authentication or
RADIUS authentication
Local authentication is
performed by default.
Refer to the AAA part for
more.
Required
The user name and
password of a local user are
configured on the switch.
Configure user
name and
password
Configure user names
and passwords for
local/RADIUS users
The user name and
password of a remote user
are configured on the
RADIUS server. Refer to
user manual of RADIUS
server for more.
Scheme
Manage VTY
users
Set service type for
VTY users
Required
Optional
Perform common
configuration
Perform common
Telnet configuration
Refer to
Table 2-6
.
To improve security and prevent attacks to the unused Sockets, TCP 23 and TCP 22, ports for Telnet
and SSH services respectively, will be enabled or disabled after corresponding configurations.
z
If the authentication mode is
none
, TCP 23 will be enabled, and TCP 22 will be disabled.
z
If the authentication mode is
password
, and the corresponding password has been set, TCP 23
will be enabled, and TCP 22 will be disabled.
z
If the authentication mode is
scheme
, there are three scenarios: when the supported protocol is
specified as
telnet
, TCP 23 will be enabled; when the supported protocol is specified as
ssh
, TCP
22 will be enabled; when the supported protocol is specified as
all
, both the TCP 23 and TCP 22
port will be enabled.
2-17