30
Chapter 5: Configuring Device Security
Defining Access Method
SFE1000P Gigabit Ethernet Switch Reference Guide
Chapter
5
–
Login
— Indicates that the RADIUS server is used for authenticating user name and
passwords.
–
802.1X
— Indicates that the RADIUS server is used for 802.1X authentication.
–
All
— Indicates that the RADIUS server is used for authenticating user name and
passwords, and 802.1X port authentication.
•
Use Default
— Uses the default value for the parameter.
Defining Access Method
The access method section contains the following pages:
• Defining Access Profiles
• Defining Profile Rules
Defining Access Profiles
Access profiles are profiles and rules for accessing the device. Access to management functions can
be limited to user groups. User groups are defined for interfaces according to IP addresses or IP
subnets. Access profiles contain management methods for accessing and managing the device. The
device management methods include:
• All
• Telnet
• Secure Telnet (SSH)
• HTTP
• Secure HTTP (HTTPS)
• SNMP
Management access to different management methods may differ between user groups. For
example, User Group 1 can access the switch module only via an HTTPS session, while User Group
2 can access the switch module via both HTTPS and Telnet sessions. The Access Profile Page contains
the currently configured access profiles and their activity status. Assigning an access profile to an
interface denies access via other interfaces. If an access profile is assigned to any interface, the
device can be accessed by all interfaces.