Section 7.0: AAA (6 points)

7.1. AAA on the Switch (3 points)

  1. Configure RADIUS authentication and authorization for Switch2 management.

  2. Configure AAA to fall back local in the event the AAA server is not available.

  3. Configure switch2 to send all authentication requests to RADIUS server 172.16.1.5 only.

  4. Configure switch2 to send all accounting requests to RADIUS server 172.16.1.6 only.

  5. Configure user switch-telnet password cisco on CiscoSecure ACS and switch2.

7.2. AAA on PIX (3 points)

  1. Configure PIX management for Telnet authentication using TACACS+.

  2. PIX management should be allowed from VLAN-2 only.

  3. Configure user pix-telnet password cisco in CiscoSecure ACS.

  4. PIX console should not be affected with AAA.

Get CCIE Security Practice Labs now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.