Chapter 18: 802.1x Port-based Network Access
202
Overview
The 802.1x port-based network access control feature lets you control
who can send traffic through, and receive traffic from, the individual switch
ports. The switch does not allow an end node to send or receive traffic
through a port until the user of the node has been authenticated by a
RADIUS server.
This port-security feature is used to prevent unauthorized individuals from
connecting a computer to a switch port or using an unattended workstation
to access your network resources. Only those users designated as valid
network users on a RADIUS server are permitted to use the switch to
access the network.
This port security method uses the RADIUS authentication protocol. To
use the 802.1x port-based network access control feature, you must
configure RADIUS and add RADIUS servers to the switch. For more
information about RADIUS and its configuration, see Chapter 17,
“RADIUS and Clients” on page 187.
Note
RADIUS with Extensible Authentication Protocol (EAP) extensions
is the only supported authentication protocol for 802.1x port-based
network access control. This feature is not supported with the
authentication protocol.
The switch does not authenticate any end nodes connected to its ports. Its
function is to act as an intermediary between the end nodes or users and
the RADIUS authentication server during the authentication process.
Port Roles
Part of the task to implementing this feature is specifying the roles of the
ports on the switch. The roles are listed here:
None Role:
Switch ports in the none role do not participate in port-based access
control. They forward traffic without authenticating the supplicants of
the network devices. This is the default setting for the switch ports.
Note
A RADIUS authentication server cannot authenticate itself and must
communicate with the switch through a port that is not configured as
an authenticator port.
Содержание AT-8100L/8POE
Страница 4: ......
Страница 10: ...Contents 10...
Страница 14: ...Figures 14...
Страница 22: ...Chapter 1 AT 8100 Series Version 2 2 5 0 Web Browser Interface 22...
Страница 84: ...Chapter 5 Setting Port Statistics 84...
Страница 90: ...Chapter 6 Port Mirroring 90 6 Click Apply 7 Click SAVE to save your changes to the startup configuration file...
Страница 92: ...Chapter 6 Port Mirroring 92...
Страница 100: ...Chapter 7 Spanning Tree Protocol on a Port 100...
Страница 120: ...Chapter 9 Link Aggregation Control Protocol LACP 120...
Страница 130: ...Chapter 10 Setting Static Port Trunks 130...
Страница 148: ...Chapter 12 Spanning Tree Protocols on the Switch 148...
Страница 158: ...Chapter 13 Internet Group Management Protocol IGMP Snooping 158...
Страница 168: ...Chapter 14 IGMP Snooping Querier 168...
Страница 178: ...Chapter 15 Power Over Ethernet PoE 178...
Страница 230: ...Chapter 19 Setting IPv4 and IPv6 Addresses 230...
Страница 242: ...Chapter 20 Access Control Lists ACL 242...
Страница 246: ...Chapter 21 Setting Static Routes 246 8 Click Apply 9 Click SAVE...
Страница 250: ...Chapter 21 Setting Static Routes 250...
Страница 319: ...AT 8100 Series Version 2 2 5 0 Web Interface User s Guide 319 Model Name Asset ID...
Страница 320: ...Chapter 25 LLDP and LLDP MED 320...