
Configuration guide
Added and modified features
AAA
Added features:
•
Configuring a local user to use the LAN access service.
•
Configuring AAA methods for LAN users.
•
Setting the traffic statistics unit for a RADIUS or HWTACACS server.
•
Configuring the IPv6 address and port number of an LDAP server.
•
Configuring the local user type.
•
Configuring the RADIUS or HWTACACS server to support IPv6.
•
Enabling the session-control feature.
Modified features:
•
Configuring the local user password.
•
Specifying AAA methods in an ISP domain to apply by default or to
login users.
802.1X
Added features: 802.1X.
MAC authentication
Added features: MAC authentication.
Port security
Added features: Port security.
Password control
Added features: Password control.
Public key management
N/A
PKI
Added features: PKI.
SSH
Added features:
•
Configuring the service type as SCP for SSH users.
•
Configuring the device as an SCP client.
•
Specifying the output interface used by a client to connect to the
IPv6 SFTP server.
•
Specifying the output interface used by a client to connect to the
IPv6 Stelnet server.
•
Specifying 256-bit AES_CBC as a preferred client-to-server
encryption algorithm.
Modified features: Setting an ACL for IPv6 SSH clients.
SSL
Added features: SSL.
IP source guard
Added features:
•
Displaying IPv4 source guard entries with the specified fields.
•
Clearing IPv4 source guard entries with the specified fields.
ARP attack protection
Modified features:
•
Setting the aging time of ARP attack entries.
•
Setting the threshold for source MAC address-based ARP attack
detection.
uRPF
Added features: uRPF.
FIPS
Added features: FIPS.
IPsec
Added features: IPsec.