
2-3
Figure 2-2
Authorized/unauthorized status of a controlled port
You can set the access control mode of a specified port to control the authorization status. The access
control modes include:
z
authorized-force
: Places the port in the authorized state, allowing users of the ports to access
the network without authentication.
z
unauthorized-force
: Places the port in the unauthorized state, denying any access requests from
users of the ports.
z
auto
: Places the port in the unauthorized state initially to allow only EAPOL frames to pass, and
turns the ports into the authorized state to allow access to the network after the users pass
authentication. This is the most common choice.
Control direction
In the unauthorized state, the controlled port can be set to deny traffic to and from the client or just the
traffic from the client.
Currently, your device can only be set to deny traffic from the client.
EAP over LANs
EAPOL frame format
EAPOL, defined in 802.1X, is intended to carry EAP protocol packets between clients and devices over
LANs.
Figure 2-3
shows the EAPOL frame format.
Содержание 4210G Series
Страница 459: ...4 8...
Страница 493: ...12 1...
Страница 968: ...19 6 000f e235 dc71 1 Config static GigabitEthernet 1 0 1 NOAGED 1 mac address es found...