264
Figure 275 Configuring 802.1X on a port
describes the configuration items.
Table 98 Configuration items
Item Description
Port
Select a port where you want to enable 802.1X. Only ports not enabled with
802.1X authentication are available.
802.1X configuration takes effect on a port only after 802.1X is enabled
both globally and on the port.
Port Control
Select an access control method for the port,
MAC Based
or
Port Based
.
Port Authorization
Select a port authorization state for 802.1X:
•
Auto
—Places the port initially in the unauthorized state to allow only
EAPOL packets to pass, and after a user passes authentication, sets
the port in the authorized state to allow access to the network. You can
use this option in most scenarios.
•
Force-Authorized
—Places the port in the authorized state, enabling
users on the port to access the network without authentication.
•
Force-Unauthorized
—Places the port in the unauthorized state,
denying any access requests from users on the port.
Max Number of Users
Set the maximum number of concurrent 802.1X users on the port.
Enable Handshake
Specify whether to enable the online user handshake function.
This function enables the network access device to send handshake
messages to online users at the interval set by the
Handshake Period
setting. If no response is received from an online user after the maximum
number of handshake attempts (set by the
Retry Times
setting) has been
made, the network access device sets the user in the offline state. For
information about the timers, see "
."
NOTE:
If the network has 802.1X clients that cannot exchange handshake packets
with the network access device, disable the online user handshake function
to prevent their connections from being inappropriately torn down.
Enable
Re-Authentication
Specify whether to enable periodic online user re-authentication on the
port.
Periodic online user re-authentication tracks the connection status of online
users and updates the authorization attributes assigned by the server, such
as the ACL, and VLAN. The re-authentication interval is specified by the
Re-Authentication Period
setting in
.
NOTE:
Summary of Contents for FlexNetwork NJ5000
Page 12: ...x Index 440 ...
Page 39: ...27 Figure 16 Configuration complete ...
Page 67: ...55 Figure 47 Displaying the speed settings of ports ...
Page 78: ...66 Figure 59 Loopback test result ...
Page 158: ...146 Figure 156 Creating a static MAC address entry ...
Page 183: ...171 Figure 171 Configuring MSTP globally on Switch D ...
Page 243: ...231 Figure 237 IPv6 active route table ...