194
Configuring IEEE 802.1x Port-Based Authentication
Information About Configuring IEEE 802.1x Port-Based Authentication
Authentication Manager
Port-Based Authentication Methods
lists the authentication methods supported in these host modes:
Single host—Only one data or voice host (client) can be authenticated on a port.
Multiple host—Multiple data hosts can be authenticated on the same port. (If a port becomes unauthorized in
multiple-host mode, the switch denies network access to all of the attached clients.)
Multidomain authentication (MDA)—Both a data device and voice device can be authenticated on the same switch
port. The port is divided into a data domain and a voice domain.
Multiple authentication—M
ultiple hosts can authenticate on the data VLAN. This mode also allows one client on the
VLAN if a voice VLAN is configured.
Table 29
802.1x Features
Authentication Method
Mode
Single Host
Multiple Host
MDA
1
Multiple
Authentication
2
802.1x
VLAN assignment
Per-user ACL
Filter-ID attribute
Downloadable ACL
Redirect URL
VLAN assignment
Per-user ACL
Filter-ID attribute
Downloadable ACL
Redirect URL
VLAN assignment
Per-user ACL
Filter-Id attribute
Downloadable ACL
Redirect URL
Per-user ACL
Filter-Id attribute
Downloadable ACL
Redirect URL
MAC authentication bypass
VLAN assignment
Per-user ACL
Filter-ID attribute
Downloadable ACL
Redirect URL
VLAN assignment
Per-user ACL
Filter-ID attribute
Downloadable ACL
Redirect URL
VLAN assignment
Per-user ACL
Filter-Id attribute
Downloadable ACL
Redirect URL
Per-user ACL
Filter-Id attribute
Downloadable ACL
Redirect URL
Standalone web authentication
Proxy ACL, Filter-Id attribute, downloadable ACL
2
NAC Layer 2 IP validation
Filter-Id attribute
Downloadable ACL
Redirect URL
Filter-Id attribute
Downloadable ACL
Redirect URL
Filter-Id attribute
Downloadable ACL
Redirect URL
Filter-Id attribute
3
Downloadable ACL
Redirect URL
Web authentication as fallback
method
3
Proxy ACL
Filter-Id attribute
Downloadable ACL
Proxy ACL
Filter-Id attribute
Downloadable ACL
Proxy ACL
Filter-Id attribute
Downloadable ACL
Proxy ACL
3
Filter-Id attribute
Downloadable ACL
1.
MDA = Multidomain authentication.
2.
Also referred to as
multiauth
.
3.
For clients that do not support 802.1x authentication.
Summary of Contents for IE 4000
Page 12: ...8 Configuration Overview Default Settings After Initial Switch Configuration ...
Page 52: ...48 Configuring Interfaces Monitoring and Maintaining the Interfaces ...
Page 108: ...104 Configuring Switch Clusters Additional References ...
Page 128: ...124 Performing Switch Administration Additional References ...
Page 130: ...126 Configuring PTP ...
Page 140: ...136 Configuring CIP Additional References ...
Page 146: ...142 Configuring SDM Templates Configuration Examples for Configuring SDM Templates ...
Page 192: ...188 Configuring Switch Based Authentication Additional References ...
Page 244: ...240 Configuring IEEE 802 1x Port Based Authentication Additional References ...
Page 298: ...294 Configuring VLANs Additional References ...
Page 336: ...332 Configuring STP Additional References ...
Page 408: ...404 Configuring DHCP Additional References ...
Page 450: ...446 Configuring IGMP Snooping and MVR Additional References ...
Page 490: ...486 Configuring SPAN and RSPAN Additional References ...
Page 502: ...498 Configuring Layer 2 NAT ...
Page 770: ...766 Configuring IPv6 MLD Snooping Related Documents ...
Page 930: ...926 Configuring IP Unicast Routing Related Documents ...
Page 976: ...972 Configuring Cisco IOS IP SLAs Operations Additional References ...
Page 978: ...974 Dying Gasp ...
Page 990: ...986 Configuring Enhanced Object Tracking Monitoring Enhanced Object Tracking ...
Page 994: ...990 Configuring MODBUS TCP Displaying MODBUS TCP Information ...
Page 996: ...992 Ethernet CFM ...
Page 1066: ...1062 Using an SD Card SD Card Alarms ...