136
Dell PowerConnect 55xx Systems User Guide
•
Authorized
— Places the interface into an authorized state
without being authenticated. The interface resends and receives
normal traffic without client port-based authentication.
•
Unauthorized
— Denies the selected interface system access by
moving the interface into unauthorized state. The device cannot
provide authentication services to the client through the
interface.
–
Current Interface Control
— Displays the current port authorization
state.
–
Authentication Type
— Select the type of authentication on the port.
The possible options are:
•
802.1x Only
— 802.1X authentication is the only authentication
method performed on the port.
•
MAC Only
— Port is authenticated, based on the supplicant
MAC address. Only eight MAC-based authentications can be
used on the port.
•
802.1x & MAC
— Both 802.1X and MAC-based authentication
are performed on the switch. The 802.1X authentication takes
precedence.
NOTE:
For MAC authentication to succeed, the RADIUS server supplicant
username and password must be the supplicant MAC address. The MAC
address must be in lower case letters and entered without the “:” or “-”
separators; for example: 0020aa00bbcc.
–
Dynamic VLAN Assignment
— Enable/disable dynamic VLAN
assignment for this port. This feature enables you to automatically
assign users to VLANs during the RADIUS server authentication.
When a user is authenticated by the RADIUS server, the user is
automatically joined to the VLAN configured on a RADIUS server.
• Port Lock and Port Monitor should be disabled when DVA is
enabled.
• Dynamic VLAN Assignment (DVA) can occur only if a RADIUS
server is configured, and port authentication is enabled and set to
802.1x multi-session mode.
• If the RADIUS Accept Message does not contain the supplicant’s
VLAN, the supplicant is rejected.
Summary of Contents for POWERCONNECT 5524
Page 415: ...Dell PowerConnect 55xx Systems User Guide 415 ...
Page 728: ......