Download Print this page

Cisco 3120 Series Quickspecs page 11

Cisco catalyst blade switch 3120 for hp
Hide thumbs Also See for 3120 Series:

Advertisement

QuickSpecs
Technical Specifications
extensions. This set of comprehensive features not only helps prevent
external attacks, but defends the network against "man-in-the-middle"
attacks, a primary concern in today's business environment. The switch also
supports the Network Admission Control (NAC) security framework.
Security features include:
Dynamic ARP Inspection (DAI) helps ensure user integrity by preventing
malicious users from exploiting the insecure nature of the ARP protocol.
DHCP Snooping prevents malicious users from spoofing a DHCP server and
sending out bogus addresses. This feature is used by other primary security
features to prevent a number of other attacks such as ARP poisoning.
IP source guard prevents a malicious user from spoofing or taking over
another user's
IP address by creating a binding table between the client's IP and MAC address,
port,
and VLAN.
Unicast RPF feature helps mitigate problems caused by the introduction of
malformed or forged (spoofed) IP source addresses into a network by
discarding IP packets that lack a verifiable IP source address.
IEEE 802.1x allows dynamic, port-based security, providing user
authentication.
IEEE 802.1x with VLAN assignment allows a dynamic VLAN assignment for a
specific user regardless of where the user is connected.
IEEE 802.1x and port security are provided to authenticate the port and
manage network access for all MAC addresses, including that of the client.
IEEE 802.1x with an ACL assignment allows for specific identity-based security
policies regardless of where the user is connected.
IEEE 802.1x with guest VLAN allows guests without 802.1x clients to have
limited network access on the guest VLAN.
Web authentication for non-802.1x clients allows non-802.1x clients to use an
SSL-based browser for authentication.
Cisco security VLAN ACLs on all VLANs prevents unauthorized data flows from
being bridged within VLANs.
Cisco standard and extended IP security router ACLs define security policies on
routed interfaces for control-plane and data-plane traffic. IPv6 ACLs can be
applied to filter
IPv6 traffic.
DA - 13023 Worldwide — Version 14 — May 2, 2014
Cisco Catalyst Blade Switch 3120 for HP
Page 11

Advertisement

loading

This manual is also suitable for:

Catalyst blade switch 3120