xStack® DGS-3120 Series Layer 3 Managed Gigabit Ethernet Switch Web UI Reference Guide
324
can be set by management to any value in the range from 1 to 10.
TxPeriod (1-65535)
This sets the TxPeriod of time for the authenticator PAE state machine. This
value determines the period of an EAP Request/Identity packet transmitted to the
client. The default setting is
30
seconds.
ReAuthPeriod (1-65535)
A constant that defines a nonzero number of seconds between periodic re-
authentication of the client. The default setting is
3600
seconds.
ReAuthentication
Determines whether regular re-authentication will take place on this port. The
default setting is
Disabled
.
Port Control
Use the drop-down menu to select the port authorization state.
ForceAuthorized
- Select to disable 802.1X and cause the port to transition to the
authorized state without any authentication exchange required. This means the
port transmits and receives normal traffic without 802.1X-based authentication of
the client.
Auto
- Select to enable 802.1X and cause the port to begin in the unauthorized
state, which allows only EAPOL frames to be sent and received through the port.
The authentication process begins when the link state of the port transitions from
down to up, or when an EAPOL-start frame is received. The Switch then requests
the identity of the client and begins relaying authentication messages between
the client and the authentication server. This is the default.
ForceUnauthorized
- Select to have the port to remain in the unauthorized state,
which ignores all attempts by the client to authenticate. The Switch cannot
provide authentication services to the client through the interface.
Capability
This allows the 802.1X Authenticator settings to be applied on a per-port basis.
Select
Authenticator
to apply the settings to the port. When the setting is
activated, a user must pass the authentication process to gain access to the
network. Select
None
disable 802.1X functions on the port.
Direction
Sets the administrative-controlled direction to
Both
or
In.
If
Both
is selected,
control is exerted over both incoming and outgoing traffic through the controlled
port selected in the first field. If
In
is selected, the control is only exerted over
incoming traffic through the port the user selected in the first field.
Forward EAPOL PDU
This is a global setting to control the forwarding of EAPOL PDU. When 802.1X
functionality is disabled globally or for a port, and if 802.1X forward PDU is
enabled both globally and for the port, a received EAPOL packet on the port will
be flooded in the same VLAN to those ports for which 802.1X forward PDU is
enabled and 802.1X is disabled (globally or just for the port). The default state is
disabled.
Max User (1-448)
Specify the maximum number of users. The maximum user limit is 448 users. The
default is 16. Tick the
No Limit
check box to have unlimited users.
Click the
Refresh
button to refresh the display table so that new entries will appear.
Click the
Apply
button to accept the changes made.
802.1X User Settings
Users can set different 802.1X users in switch’s local database.
To view this window, click
Security > 802.1X > 802.1X User Settings
as shown below:
Figure 8-11 802.1X User Settings window
Summary of Contents for xStack DGS-3120 Series
Page 1: ......