459
ACL assignment (MAC authentication), 105
configuring intrusion protection (port security), 180
configuring NTK (port security), 179
configuring security (port security), 179
port security, 173
portal stateful failover, 123
using authentication with other features (802.1X),
79
using MAC authentication with other features, 105
field check (IKE), 293
files (SFTP), 332
filtering
enabling source MAC consistency check for
packet (ND attack defense), 436
IP source guard configuration, 407, 410
IPv4 source guard dynamic binding by DHCP
relay configuration, 413
IPv4 source guard dynamic binding by DHCP
snooping configuration, 411
static IPv4 source guard binding entry
configuration, 410
FIPS
conditional self-tests, 442
configuration, 440
displaying, 442
enabling mode, 440
power up self-tests, 441
self-tests, 441
settings changed by enabling, 440
triggered self-test, 442
firewall
application layer protocol detection (ASPF), 347
applying ASPF policy to interface, 353
ASPF functions, 346
configuration, 345
configuring ASPF, 352, 354
configuring ASPF policy, 353
configuring default filtering action, 349
configuring IPv4 default filtering action, 349
configuring IPv4 packet filtering on interface, 350
configuring IPv6 default filtering action, 349
configuring IPv6 packet filtering on interface, 350
configuring packet filtering firewall, 348, 351
configuring packet filtering on interface, 349
configuring port mapping, 353
displaying packet filtering firewall, 350
enabling firewall function, 352
enabling function, 348
enabling IPv4 firewall function, 348
enabling IPv6 firewall function, 349
maintaining packet filtering firewall, 350
packet filtering, 345
protocols detected by ASPF, 346
transport layer protocol detection (ASPF), 348
fixed ARP (ARP attack protection), 431
flood attack, 387
format
packet (RADIUS), 4
setting RADIUS username format, 26
forwarding (ARP attack protection), 429
FTP
ALG configuration, 358
settings changed by enabling FIPS, 440
SFTP.
See
SFTP
function
ASPF, 346
enabling firewall, 348
enabling IPv4 firewall, 348
enabling IPv6 firewall, 349
enabling proxy detection (802.1X), 87
extended (portal), 115
gateway protection (ARP attack protection), 432