481
SSH2.0 router acts as publickey authentication
client configuration, 326
SSH2.0 server configuration, 316
URPF configuration, 437, 438
RSA
applying RSA digital signature in IKE negotiation,
237
configuring PKI CA certificate request (RSA Keon),
230
configuring PKI CA certificate request (Windows
2003 Server), 234
destroying local key pair, 228
settings changed by enabling FIPS, 440
RSH configuration, 207, 208
rule
configuring a portal-free rule, 128
configuring IP address-based connection limit rule,
370
keywords in ACL rules, 249
persistent session, 365
setting rule timer (EAD fast deployment), 100
troubleshooting connection limit rules with
overlapping protocol types, 373
troubleshooting connection limit rules with
overlapping segments, 373
SA
configuring IPsec proposal, 252
enabling invalid SPI recovery (IPsec), 261
IKE configuration, 286, 288, 294
mirror image ACL, 251
setting IKE keepalive timer, 292
setting IKE NAT keepalive timer, 293
setup mode (IPsec), 245
scanning attack, 387
scheme
configuring (AAA), 16
configuring (HWTACACS), 33
creating (RADIUS), 21
secure
email (PKI), 221
file transfer protocol.
See
SFTP
mode (port security MAC address learning), 175
shell.
See
SSH
security
AAA configuration, 1
attack detection configuration, 386, 391, 399
attack protection configuration, 386, 391, 399
autoLearn configuration, 183
check function (portal), 115
configuring local gateway name, 289
configuring portal server detection function, 135
configuring portal server detection functions, 135
EAD fast deployment configuration, 99, 100
enabling password control, 200
FIPS configuration, 440
firewall configuration, 345
ICMP attack protection configuration, 405
IKE mechanism, 286
implementing ACL-based IPsec, 248
IPsec configuration, 243, 248, 270
IPsec security association, 244
macAddressElseUserLoginSecure configuration,
190
mechanism (RADIUS), 2
password control configuration, 197, 200, 204
PFS feature (IKE), 286
PKI CA certificate request configuration (RSA
Keon), 230
PKI CA certificate request configuration (Windows
2003 Server), 234
PKI configuration, 219, 230
policy server (portal), 116
port configuration, 173, 183