Active Access Profile - Cisco SF500-24 Administration Manual

500 series stackable managed switch
Hide thumbs Also See for SF500-24:
Table of Contents

Advertisement

Configuring Security
Defining Access Profiles
STEP 1
STEP 2
Cisco 500 Series Stackable Managed Switch Administration Guide
Interface—Which ports, LAGs, or VLANs are permitted to access or are
denied access to the web-based switch configuration utility.
Source IP Address—IP addresses or subnets. Access to management
methods might differ among user groups. For example, one user group
might be able to access the switch module only by using an HTTPS
session, while another user group might be able to access the switch
module by using both HTTPS and Telnet sessions.

Active Access Profile

The
Access Profiles
enables selecting one access profile to be the active one.
When a user attempts to access the switch through an access method, the switch
looks to see if the active access profile explicitly permits management access to
the switch through this method. If no match is found, access is denied.
When an attempt to access the switch is in violation of the active access profile,
the switch generates a SYSLOG message to alert the system administrator of the
attempt.
If a console-only access profile has been activated, the only way to deactivate it is
through a direct connection from the management station to the physical console
port on the switch.
For more information see Defining Profile Rules.
Access Profiles
Use the
the access profile only contains a single rule, you are finished. To add additional
rules to the profile, use the Profile Rules page.
Click Security > Mgmt Access Method > Access Profiles. The Access Profiles
page is displayed.
This page displays all of the access profiles, active and inactive.
To change the active access profile, select a profile from the Active Access
Profile drop down menu and click Apply. This makes the chosen profile the active
access profile.
A caution message is displayed if you selected Console Only. If you
NOTE
continue, you are immediately disconnected from the web-based switch
configuration utility and can access the switch only through the console port.
This only applies to device types that offer a console port.
page displays the access profiles that are defined and
page to create an access profile and to add its first rule. If
18
308

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents