
User’s Manual of GS-5220 LCD Series
369
access to a network by requiring users to first submit credentials for authentication. One or more central
servers, the backend servers, determine whether the user is allowed access to the network. These
backend (RADIUS) servers are configured on the "Configuration
→
Security
→
AAA" Page. The
IEEE802.1X standard defines port-based operation, but non-standard variants overcome security
limitations as shall be explored below.
MAC-based authentication allows for authentication of more than one user on the same port, and doesn't
require the user to have special 802.1X supplicant software installed on his system. The switch uses the
user's MAC address to authenticate against the backend server. Intruders can create counterfeit MAC
addresses, which makes MAC-based authentication less secure than 802.1X authentication. The NAS
configuration consists of two sections, a system- and a port-wide. The Network Access Server
Configuration screen in
Figure 4-11-4
appears.
Summary of Contents for GS-5220 Series
Page 1: ...User s Manual of GS 5220 LCD Series 1 GS 5220 Series L2 Gigabit 10 Gigabit Managed LCD Switch ...
Page 18: ...User s Manual of GS 5220 LCD Series 18 ...
Page 253: ...User s Manual of GS 5220 LCD Series 253 Figure 4 8 1 Multicast Service ...
Page 254: ...User s Manual of GS 5220 LCD Series 254 Figure 4 8 2 Multicast Flooding ...
Page 413: ...User s Manual of GS 5220 LCD Series 413 Figure 4 11 11 RADIUS Server Configuration Screenshot ...
Page 510: ...User s Manual of GS 5220 LCD Series 510 Figure 4 16 8 LLDP Configuration Screenshot ...