
27
You can configure rules to limit access to the switch management interface based on criteria such as access
type and source IP address of the management host. You can also require the user to be authenticated
locally or by an external server, such as a RADIUS server.
1.2.2.
AAA Command Authorization
This feature enables AAA Command Authorization in QNOS.
1.2.3.
Password-protected Management Access
Access to the CLI and SNMP management interfaces is password protected, and there are no default users on
the system.
1.2.4.
Strong Password Enforcement
The Strong Password feature enforces a baseline password strength for all locally administered users.
Password strength is a measure of the effectiveness of a password in resisting guessing and brute-force
attacks. The strength of a password is a function of length, complexity and randomness. Using strong
passwords lowers overall risk of a security breach.
1.2.5.
MAC-based Port Security
The port security feature limits access on a port to users with specific MAC addresses. These addresses are
manually defined or learned on that port. When a frame is seen on a locked port, and the frame source
MAC address is not tied to that port, the protection mechanism is invoked.
1.2.6.
RADIUS Client
The switch has a Remote Authentication Dial In User Service (RADIUS) client and can support up to 32
authentication and accounting RADIUS servers.
1.2.7.
Client
The switch has a client. provides centralized security for validation of users accessing the
switch. provides a centralized user management system while still retaining consistency with
RADIUS and other authentication processes.
1.2.8.
Dot1x Authentication (IEEE 802.1X)
Dot1x authentication enables the authentication of system users through a local internal server or an
external server. Only authenticated and approved system users can transmit and receive data. Supplicants
are authenticated using the Extensible Authentication Protocol (EAP). Also supported are PEAP, EAP-TTL,
EAP- TTLS, and EAP-TLS.
Summary of Contents for QuantaMesh QNOS5
Page 1: ...QuantaMesh Ethernet Switch Configuration Guide QNOS5 NOS Platform ...
Page 209: ...209 Table 7 8 IPv6 Neighbor Discovery Settings ...
Page 226: ...226 Table 8 2 L3 Multicast Defaults ...
Page 254: ...254 Appendix A Term and Acronyms Table 9 5 Terms and Acronyms ...