Configuring Port-Based and User-Based Access Control (802.1X)
Option For Authenticator Ports: Configure Port-Security To Allow Only 802.1X-Authenticated Devices
Port-Security
N o t e
If 802.1X port-access is configured on a given port, then port-security
learn-
mode
for that port must be set to either
continuous
(the default) or
port-access
.
In addition to the above, to use port-security on an authenticator port (chapter
13), use the per-port
client-limit
option to control how many MAC addresses
of 802.1X-authenticated devices the port is allowed to learn. (Using
client-limit
sets 802.1X to user-based operation on the specified ports.) When this limit is
reached, no further devices can be authenticated until a currently authenti
cated device disconnects and the current delay period or logoff period has
expired.
Configure the port access type.
Syntax:
aaa port-access auth <
port-list
> client-limit < 1 -8>
Configures user-based 802.1X authentication on the
specified ports and sets the number of authenticated
devices the port is allowed to learn. For more on this
command, refer to “Configuring Switch Ports as 802.1X
Authenticators” on page 12-19.)
— Or —
no aaa port-access auth <
port-list
> client-limit
Configures port-based 802.1X authentication on the
specified ports, which opens the port. (Refer to “User
Authentication Methods” on page 12-4.)
12-48
Summary of Contents for PROCURVE 2910AL
Page 1: ...Access Security Guide ProCurve Switches W 14 03 2910al www procurve com ...
Page 2: ......
Page 3: ...HP ProCurve 2910al Switch February 2009 W 14 03 Access Security Guide ...
Page 84: ...Configuring Username and Password Security Front Panel Security 2 36 ...
Page 156: ...TACACS Authentication Operating Notes 4 30 ...
Page 288: ...Configuring Secure Socket Layer SSL Common Errors in SSL setup 8 22 ...
Page 416: ...Configuring Advanced Threat Protection Using the Instrumentation Monitor 10 28 ...
Page 572: ...Using Authorized IP Managers Operating Notes 14 14 ...
Page 592: ...12 Index ...
Page 593: ......