Cisco Catalyst 3750 Series Datasheet page 9

Cisco catalyst 3750: specifications
Hide thumbs Also See for Catalyst 3750 Series:
Table of Contents

Advertisement

Table 1
Product Features and Benefits (Continued)
Feature
All contents are Copyright © 1992–2004 Cisco Systems, Inc. All rights reserved. Important Notices and Privacy Statement.
Benefit
• Terminal Access Controller Access Control System Plus (TACACS+) and Remote
Authentication Dial-In User Service (RADIUS) authentication enable centralized
control of the switch and restrict unauthorized users from altering the
configuration.
• MAC address notification allows administrators to be notified of users added to
or removed from the network.
• DHCP Snooping allows administrators to ensure consistent mapping of IP to
MAC addresses. This can be used to prevent attacks which attempt to poison
the DHCP binding database, and to rate-limit the amount of DHCP traffic enters
a switch port.
• Port security secures the access to an access or trunk port based on
MAC address.
• After a specific timeframe, the aging feature removes the MAC address from
the switch to allow another device to connect to the same port.
• Trusted boundary provides the ability to trust the QoS priority settings if an IP
phone is present and to disable the trust setting in the event that the IP phone
is removed, thereby preventing a malicious user from overriding prioritization
policies in the network.
• Multilevel security on console access prevents unauthorized users from altering
the switch configuration.
• The user-selectable address-learning mode simplifies configuration and
enhances security.
• Bridge Protocol Data Unit (BPDU) guard shuts down Spanning-Tree Protocol
PortFast-enabled interfaces when BPDUs are received to avoid accidental
topology loops.
• Spanning Tree Root Guard (STRG) prevents edge devices not in the network
administrator's control from becoming Spanning Tree Protocol root nodes.
• IGMP filtering provides multicast authentication by filtering out non-subscribers
and limits the number of concurrent multicast streams available per port.
• Dynamic VLAN assignment is supported through implementation of VLAN
Membership Policy Server (VMPS) client functionality to provide flexibility
in assigning ports to VLANs. Dynamic VLAN enables the fast assignment of
IP addresses.
• Cisco CMS Software security wizards ease the deployment of security features
for restricting user access to a server as well as to a portion or all of the network.
• 1000 access control entries (ACEs) are supported.
Cisco Systems, Inc.
Page 9 of 22

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents