250
Network Administration: Security
FILE LOCATION: C:\Users\gina\Desktop\Checkout_new\Dell Astute\User
Guide\Dell_Astute_Network_Admin_Security.fm
D E L L C O N F ID E N T IA L – P R E L IM I N A R Y 8 / 9 /1 6 - FO R PR O O F O N L Y
•
RADIUS
— Authenticate the user on the RADIUS server. If no
authentication is performed, the session is not permitted.
•
None
— Do not authenticate the user. Permit the session.
–
Guest VLAN
— Enable/disable the use of a Guest VLAN for
unauthorized ports. If a Guest VLAN is enabled, all unauthorized
ports automatically join the VLAN selected in the Guest VLAN ID
field. If a port is later authorized, it is removed from the Guest VLAN.
–
VLAN List
— Select the Guest VLAN from the VLAN list.
–
Accept Supplicant when Dynamic Policy/ACL Assignment Has No
Resources
— If no resources remain in the TCAM, the system can
either reject (disable) or allow (enable) successful authentication.
Port-Based Authentication Interface Settings
To configure 802.1x authentication on an interface:
1
Click
Network Administration
>
Security
>
Dot1 Authentications
>
Port Based Authentication - Interface Settings
.
Port parameters for the selected device are displayed.
2
Click
Edit
.
3
Select a port for which the authentication parameters apply in the
Interface
drop-down list.
4
Enter the parameters:
–
User Name
— Displays the username of the port.
–
Admin Interface Control
— Select the port authorization state. The
possible options are:
•
Auto
— Enables port-based authentication on the interface. The
interface moves between an authorized or unauthorized state,
based on the authentication exchange between the device and the
client.
•
Authorized
— Places the interface into an authorized state
without being authenticated. The interface resends and receives
normal traffic without client port-based authentication.