cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1696
Views
0
Helpful
5
Replies

Security guidelines in switches.

Hello to everybody.

This is my first post and I don´t know if it is the right place.

I would like to know what are the security guidelines that you set up in your switched lan, I mean, do you block unused ports? do you use 802.1x with RADIUS? do you disable telnet and http access?

What are the security guidelines that you use in your company or clients?

Thanks in advance.

3 Accepted Solutions

Accepted Solutions

Leo Laohoo
Hall of Fame
Hall of Fame

Our network uses the following:

AAA;
ACS logon to network equipments;
SSH;
HTTP/HTTPS with access list

Depending on the size of your LAN, anyone whoever says that "unused ports should be shutdown" should be shot or given a labotomy.  I have more than 300 LAN switches.  Do you know the calls I'll be getting every hour just to get ports enabled or disabled?   It would make me and my team very un-popular very fast.

Configuring Auto Smartports Macros
http://www.cisco.com/en/US/docs/switches/lan/catalyst3750e_3560e/software/release/12.2_50_se/configuration/guide/swmacro.html

View solution in original post

Ganesh Hariharan
VIP Alumni
VIP Alumni

Hi,

Check out the best practices and standard guideline for hardening of cisco devices,hopw this helps out your query !!

http://www.cisco.com/en/US/tech/tk648/tk361/technologies_tech_note09186a0080120f48.shtml

Regards

Ganesh.H

View solution in original post

Really great it had helped you.If it had really helped just mark this thread as resolved so that other user will benifitted.

Regards

Ganesh.H

View solution in original post

5 Replies 5

Leo Laohoo
Hall of Fame
Hall of Fame

Our network uses the following:

AAA;
ACS logon to network equipments;
SSH;
HTTP/HTTPS with access list

Depending on the size of your LAN, anyone whoever says that "unused ports should be shutdown" should be shot or given a labotomy.  I have more than 300 LAN switches.  Do you know the calls I'll be getting every hour just to get ports enabled or disabled?   It would make me and my team very un-popular very fast.

Configuring Auto Smartports Macros
http://www.cisco.com/en/US/docs/switches/lan/catalyst3750e_3560e/software/release/12.2_50_se/configuration/guide/swmacro.html

Thanks for your help, my network has about 100 LAN switches.

Regards.

Ganesh Hariharan
VIP Alumni
VIP Alumni

Hi,

Check out the best practices and standard guideline for hardening of cisco devices,hopw this helps out your query !!

http://www.cisco.com/en/US/tech/tk648/tk361/technologies_tech_note09186a0080120f48.shtml

Regards

Ganesh.H

Thanks for your help, this document is what I´m looking for.

Regards.

Really great it had helped you.If it had really helped just mark this thread as resolved so that other user will benifitted.

Regards

Ganesh.H

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card