Netgear M5300-28G-POE+ (GSM7228PSv1h2) - 12-Port Managed Gigabit Switch Softwarehandbuch

Seite von 764
Manage Device Security 
556
M6100, M5300, and M7100 Series Managed Switches 
8. 
To create a new login list, enter the name in the List Name field.
The name can be up to 15 alphanumeric characters long and is not case-sensitive.
9. 
In the numbered lists (1, 2, 3, 4, 5, 6) select the method to appear first in the selected 
authentication enable list. 
The options are as follows: 
-
Enable
. The privileged EXEC password is used for authentication. 
-
Line
. The line password is used for authentication. 
-
None
. The user cannot be authenticated. 
-
RADIUS
. The user's name and password are authenticated using the RADIUS server 
instead of local server. 
-
TACACS
. The user's name and password are authenticated using the TACACS 
server. 
-
Deny
. Authentication always fails. 
10. 
Click the Add button.
The login list is added to the switch.
11. 
To remove the selected authentication login list from the configuration, click the Delete 
button. 
The delete fails if the selected login list is assigned to any user (including the default user) 
for system login. You can use this button only if you logged in as the admin user, which 
has read/write access. The change is not retained across a power cycle unless you 
perform a save.
Configure an Enable Authentication List
An enable list specifies the authentication methods to validate privileged EXEC access for 
the users associated with the list. The preconfigured users, admin and guest, are assigned to 
a preconfigured list named defaultList, which you cannot delete. All newly created users are 
also assigned to the defaultList until you specifically assign them to a different list. Two 
default lists are present: enableList and enableNetList.
To configure an enable authentication list: 
1. 
Prepare your computer with a static IP address in the 169.254.100.0 subnet, for 
example, 169.254.100.201.