42
C
3: M
HAPTER
ANAGING
D
S
EVICE
ECURITY
Source IP Address — Defines the interface source IP address to
■
which the Management Access applies. The Source IP Address field is
valid for a subnetwork.
Network Mask — Determines what subnet the source IP Address
■
belongs to in the network.
Prefix Length — Defines the number of bits that comprise the source
■
IP address prefix, or the network mask of the source IP address.
Authentication Method Binding — Assigns authentication
■
methods for accessing the system. User authentication can be
performed either locally or on an external server. User authentication
occurs in the order the methods are selected. If the first authentication
method is not available, the next selected method is used. The
possible field values are:
Optional Methods — The user authentication methods. The
■
possible options are:
Local — Authenticates the user at the device level. The device
■
checks the user name and password for authentication.
RADIUS — Authenticates the user at the RADIUS server.
■
TACACS+ — Authenticates the user at the TACACS+
■
Selected Methods — The selected authentication method. The
■
possible options is:
None — Assigns no authentication method to the authentication
■
profile.
2 Define the fields.
3 Click
. Management Access is defined, and the device is updated.