Configuring Security
Configuring Management Access Methods
Cisco 220 Series Smart Switches Administration Guide Release 1.1.0.x
193
16
Configuring Management Access Methods
Management access authentication configures the authentication methods to be
used to authenticate and authorize users from different management access
methods (see
Configuring Management Access Authentication
for more
details). Management access profiles limit management access from specific
sources.
Only users who pass both the active access profile and management access
authentication are given management access to the switch.
This section includes the following topics:
•
Access Profile Rules, Filters, and Elements
•
•
•
Access Profile Rules, Filters, and Elements
Access profiles consist of rules for allowing access to the switch. Each access
profile can consist of one or more rules. The rules are executed in order of their
priority within the access profile (top to bottom).
Rules are composed of filters that include the following elements:
•
Access Methods
—Methods for accessing and managing the switch:
-
Telnet
-
Secure Telnet (SSH)
-
Hypertext Transfer Protocol (HTTP)
-
Secure HTTP (HTTPS)
-
Simple Network Management Protocol (SNMP)
-
All of the above
•
Action
—Permits or denies access to an interface or source address.
•
Interface
—Which ports or LAGs are permitted to access or denied access
to the web-based interface.