ProCurve 6200yl User's Guide Page 34

  • Download
  • Add to my manuals
  • Print
  • Page
    / 596
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 33
1-8
Security Overview
Network Security Features
Network Security Features
This section outlines features for protecting access through the switch to the
network. For more detailed information, see the indicated chapters.
Access Control Lists (ACLs)
Layer 3 IP filtering with Access Control Lists (ACLs) enables you to improve
network performance and restrict network use by creating policies for:
Switch Management Access: Permits or denies in-band management
access. This includes preventing the use of certain TCP or UDP applica-
tions (such as Telnet, SSH, Web browser, and SNMP) for transactions
between specific source and destination IP addresses.)
Application Access Security: Eliminating unwanted IP, TCP, or UDP
traffic by filtering packets where they enter or leave the switch on specific
interfaces.
ACLs can filter traffic to or from a host, a group of hosts, or entire subnets.
For details on how to apply ACLs in a network populated with ProCurve
switches that support ACLs, see Chapter 10, “Access Control Lists (ACLs)”.
Note on ACL
Security Use
ACLs can enhance network security by blocking selected IP traffic, and can
serve as one aspect of maintaining network security. However, because ACLs
do not provide user or device authentication, or protection from malicious
manipulation of data carried in IP packet transmissions, they should not
be relied upon for a complete security solution.
802.1X Access Control
This feature provides port-based or user-based authentication through a
RADIUS server to protect the switch from unauthorized access and to enable
the use of RADIUS-based user profiles to control client access to network
services. Included in the general features are the following:
user-based access control supporting up to 32 authenticated clients per
port
port-based access control allowing authentication by a single client to
open the port
switch operation as a supplicant for point-to-point connections to other
802.1X-compliant ProCurve switches
Page view 33
1 2 ... 29 30 31 32 33 34 35 36 37 38 39 ... 595 596

Comments to this Manuals

No comments