
Industrial Managed
Ethernet Switch
User Manual
錯誤
!
使用
[
常用
]
索
引標籤將
Heading
1,Product Manual
套用到您想要在此處
顯示的文字。
Page
112
of
191
Figure 2.124 Add Static MAC Webpage
Table 2.43 Description of Fields in White
-
List MAC Webpage
Label
Description
MAC Address
Type the suitable MAC address
Ports
Choose the desired ports
Remove
Option to remove the corresponding MAC address
Add
Click to add a MAC address
VLAN
Specify the corresponding VLAN address to MAC address
.
2.14.2 802
.
1X
802
.1X is an IEEE standard for port-based Network-Access Control. It provides an authentication mechanism to
devices that want to attach to a LAN or WLAN
. This protocol restricts unauthorized clients from connecting to a
LAN through ports that are opened to the Internet
. The authentication basically involves three parties (see Figure
): a supplicant, an authenticator, and an authentication server.
Supplicant: A client device that requests access to the LAN.
Authentication Server
: This server performs the actual authentication. We utilize RADIUS (
R
emote
A
uthentication
D
ial-
I
n
U
ser
S
ervice) as the authentication server.
Authenticator: The Authenticator is a network device (i.e. the EH75XX Industrial Managed Switch) that
acts as a proxy between the supplicant and the authentication server. It passes around information,
verifies information with the server, and relays responses to the supplicant.
The authenticator acts like a security guard to a protected network. The supplicant is not allowed accessing to the
protected side of the network through the authenticator until the supplicant
’s identity has been validated and
authorized. With 802
.1X authentication, a supplicant and an authenticator exchange
EAP
(
E
xtensible
A
uthentication
P
rotocol, an authentication framework widely used by IEEE). Then the authenticator forwards this
information to the authentication server for verification. If the authentication server confirms the request, the
supplicant (client device) will be allowed to access resources located on the protected side of the network.
RADIUS
:
The RADIUS is a networking protocol that provides authentication, authorization and accounting (AAA)
management for devices to connect and use a network service. Figure 2.125 shows a diagram of RADIUS
authentication sequence
.