2
Set an authentication key.
3
Configure the key from Step 2 on the servers.
4
Enable authentication, authorization, and accounting (AAA).
5
Create a login authentication method list.
6
Apply the list to the terminal lines.
7
Create an authorization and accounting method list.
The following are the prerequisites for controlling switch access with :
•
You must have access to a configured server to configure features on your switch.
Also, you must have access to services maintained in a database on a daemon
typically running on a LINUX or Windows workstation.
•
We recommend a redundant connection between a switch stack and the server. This is to
help ensure that the server remains accessible in case one of the connected stack members
is removed from the switch stack.
•
You need a system running the daemon software to use on your switch.
•
To use , it must be enabled.
•
Authorization must be enabled on the switch to be used.
•
Users must first successfully complete authentication before proceeding to
authorization.
•
To use any of the AAA commands listed in this section or elsewhere, you must first enable AAA with
the
aaa new-model
command.
•
At a minimum, you must identify the host or hosts maintaining the daemon and define the
method lists for authentication. You can optionally define method lists for
authorization and accounting.
•
The method list defines the types of authentication to be performed and the sequence in which they are
performed; it must be applied to a specific port before any of the defined authentication methods are
performed. The only exception is the default method list (which, by coincidence, is named
default
). The
default method list is automatically applied to all ports except those that have a named method list
explicitly defined. A defined method list overrides the default method list.
•
Use for privileged EXEC access authorization if authentication was performed by using
.
•
Use the local database if authentication was not performed by using .
Restrictions for
can be enabled only through AAA commands.
Consolidated Platform Configuration Guide, Cisco IOS Release 15.2(4)E (Catalyst 2960-X Switches)
776
Restrictions for
Summary of Contents for Catalyst 2960 Series
Page 96: ......
Page 196: ......
Page 250: ......
Page 292: ......
Page 488: ......
Page 589: ...P A R T VI Cisco Flexible NetFlow Configuring NetFlow Lite page 509 ...
Page 590: ......
Page 619: ...P A R T VII QoS Configuring QoS page 539 Configuring Auto QoS page 645 ...
Page 620: ......
Page 750: ......
Page 1604: ......
Page 1740: ......
Page 2105: ...P A R T XII Configuring Cisco IOS IP SLAs Configuring Cisco IP SLAs page 2025 ...
Page 2106: ......
Page 2118: ......
Page 2164: ......