Control Station Duetto
WebConfig configuration
1.7/1217
41
Port Authentication (802.1x)
In this drop-down list, the 802.1X authentication mode can be selected.
The following modes are available:
802.1x mode -
Off
: The 802.1X function is disabled.
802.1x mode - EAP-TLS
:
The 802.1X function is executed with the protocol “Extensible Authentication Protocol Transport Lay-
er Security” (EAP-TLS) and is used to establish a secure connection to the authentication server. For
the EAP-TLS authentication, it is required to import a client certificate.
If the 802.1X authentication mode “EAP-TLS” is selected, the following additional fields appear:
Identity
: Enter the name of the DUETTO device for authentication.
Client certificate
: Click on
UPLOAD
to upload the client certificate issued by the CA.
Client key
: Click on
UPLOAD
to upload the client key matching the client certificate.
Private key password
: Enter the password matching the client key, if required.
GOOD TO KNOW: What is 802.1X?
As part of the IEEE 802.1 network protocol group, IEEE 802.1X is a port-based network access control
standard. For devices like SIP stations or computers that need to get access to a LAN, WLAN or VLAN
(via 802.1Q), it works as an authentication mechanism between the so-called supplicant, authenticator
and authentication server.
In detail, the authentication mechanism works as follows:
1. Sending the login data for the local network, the supplicant asks the authenticator for access.
2. Via the authentication server, the authenticator checks whether or not the supplicant gains access.
3. If the authentication was successful, the supplicant will be connected to the LAN and/or the Internet.
ATTENTION: Public key infrastructure
To use the 802.1X authentication mode “EAP-TLS”, an existing public key infrastructure is required.
1.4
Reception
Office
Garage
Authentication
Server
Authenticator
1.
2.
3.
Supplicant