Table 277: Port Access Control Port Configuration Fields (continued)
Field
Description
Maximum Requests
The maximum number of times that the port sends an EAP request frame
(assuming that no response is received) to the client before restarting the
authentication process.
Re-Authentication Period
The amount of time that clients can be connected to the port without being
reauthenticated. If this field is disabled, connected clients are not forced to
reauthenticate periodically. To change the value, click the
Edit
icon associated
with the field and specify a value in the available field. To reset the
reauthentication period to the default value, click the Reset icon associated with
the field and confirm the action.
Maximum Users
The maximum number of clients supported on the port if the Control Mode on
the port is MAC-based 802.1X authentication.
Supplicant Options
The fields in this section can be changed only when the selected port is
configured as a supplicant port (that is, the PAE Capabilities field is set to
Supplicant).
Control Mode
The port-based access control mode on the port, which is one of the following:
•
Auto – The port is in an unauthorized state until a successful authentication
exchange has taken place between the supplicant port, the authenticator
port, and the authentication server.
•
Force Unauthorized – The port is placed into an unauthorized state and is
automatically denied system access.
•
Force Authorized – The port is placed into an authorized state and does not
require client port-based authentication to be able to send and receive
traffic.
User Name
The name the port uses to identify itself as a supplicant to the authenticator
port. The menu includes the users that are configured for system management.
When authenticating, the supplicant provides the password associated with the
selected User Name.
Authentication Period
The amount of time the supplicant port waits to receive a challenge from the
authentication server. If the configured Authentication Period expires, the
supplicant retransmits the authentication request until it is authenticated or has
sent the number of messages configured in the Maximum Start Messages field.
Start Period
The amount of time the supplicant port waits for a response from the
authenticator port after sending a Start packet. If no response is received, the
supplicant retransmits the Start packet.
Held Period
The amount of time the supplicant port waits before contacting the
authenticator port after an active 802.1X session fails.
Maximum Start Messages
The maximum number of Start packets the supplicant port sends to the
authenticator port without receiving a response before it considers the
authenticator to be 802.1X-unaware.
Click
Refresh
to update the information on the screen.
Port Details
Use this page to view 802.1X information for a specific port.
Managing Device Security
ExtremeSwitching 200 Series: Administration Guide
277