255
submitting request, 153
submitting request in auto-mode (PKI), 153
submitting request in manual mode (PKI), 153
certificate authority (CA), 148
class attribute
configuring interpretation as CAR parameters
(RADIUS), 29
client
as authentication initiator (802.1X), 66
configuring (SSH2.0), 184
configuring for password authentication (SSH2.0),
184
configuring for publickey authentication (SSH2.0),
187
configuring public key (SSH2.0), 172
configuring switch as (SFTP), 191
configuring switch as (SSH2.0), 175
configuring user interface (SSH2.0), 171
enabling listening port (RADIUS), 30
establishing server connection (SSH2.0), 176
RADIUS model, 2
specifying (RADIUS), 44
specifying source IP address/interface (SFTP), 191
specifying source IP address/interface for
(SSH2.0), 175
comparing
EAP relay and EAP termination authentication
modes (802.1X), 67
configuring
802.1X, 71, 83
AAA, 1, 14, 44
AAA schemes, 16
access control policy (PKI), 157
accounting-on (RADIUS), 28
ACL assignment (MAC authentication), 105
active acknowledgement (ARP attack protection),
229
ARP attack protection, 223
authentication (802.1X), 83
authentication trigger function (802.1X), 78
Auth-Fail VLAN (802.1X), 73, 82
autoLearn mode (port security), 116
automatic scanning (ARP attack protection), 237
basic MAC authentication, 98
certificate attribute-based access control policy
(PKI), 164
certificate request from CA running RSA Keon
(PKI), 158
certificate request from CA running Windows
®
2003 Server
™
(PKI), 161
certificate verification (PKI), 155
client (SFTP), 193
client (SSH2.0), 184
client public key (SSH2.0), 172
client public key manually (SSH2.0), 172
connection idle timeout period (SFTP), 190
CRL-checking disabled certificate verification (PKI),
156
CRL-checking enabled certificate verification (PKI),
155
defense against IP packet attack (ARP attack
protection), 224
detection (ARP attack protection), 229
detection function (ND attack defense), 240, 241
dynamic IPv4 binding by DHCP relay (IP source
guard), 217
dynamic IPv4 binding by DHCP snooping (IP
source guard), 216
dynamic IPv6 binding by DHCPv6 snooping (IP
source guard), 219
dynamic IPv6 binding by ND snooping (IP source
guard), 221
EAD fast deployment, 91, 93
first-time authentication support (SSH2.0), 175
fixed ARP (ARP attack protection), 237