Configuring Port-Based and User-Based Access Control (802.1X)
General 802.1X Authenticator Operation
No
Yes
New Client
Authenticated
Untagged
VLAN
Configured
On Port ?
RADIUS-
Assigned
VLAN?
Authorized
VLAN
Configured?
Another
(Old) Client
Already Using
Port
?
Are All Old
Clients On
Unauthorized
VLAN?
No
No
Yes
Yes
Assign New Client
to RADIUS-
Specified VLAN
Assign New Client
to Authorized VLAN
Configured on Port
Assign New Client
to Untagged VLAN
Configured On Port
Yes
New
Client VLAN
Same As Old
Client VLAN?
No
Drop All Clients
Using Unauthorized
VLAN
No
Reject New Client
On Port
Yes
Accept New Client
On Port
Yes
No
Figure 12-1. Priority of VLAN Assignment for an Authenticated Client
12-11
Summary of Contents for PROCURVE 2910AL
Page 1: ...Access Security Guide ProCurve Switches W 14 03 2910al www procurve com ...
Page 2: ......
Page 3: ...HP ProCurve 2910al Switch February 2009 W 14 03 Access Security Guide ...
Page 84: ...Configuring Username and Password Security Front Panel Security 2 36 ...
Page 156: ...TACACS Authentication Operating Notes 4 30 ...
Page 288: ...Configuring Secure Socket Layer SSL Common Errors in SSL setup 8 22 ...
Page 416: ...Configuring Advanced Threat Protection Using the Instrumentation Monitor 10 28 ...
Page 572: ...Using Authorized IP Managers Operating Notes 14 14 ...
Page 592: ...12 Index ...
Page 593: ......