![Allied Telesis AT-9400 Скачать руководство пользователя страница 576](http://html.mh-extra.com/html/allied-telesis/at-9400/at-9400_user-manual_2902755576.webp)
Chapter 31: 802.1x Port-based Network Access Control
576
Section VIII: Port Security
disabled, the supplicant is not require to reauthenticate after the initial
authentication.
6 - Reauth Period
Specifies the time period in seconds between reauthentications of the
client when the Reauth. Enabled option is set to Enabled. The default
value is 3600 seconds. The range is 1 to 65,535 seconds.
7 - Supplicant Timeout
This parameter sets the switch-to-client retransmission time for the
EAP-request frame. The default value for this parameter is 30
seconds. The range is 1 to 600 seconds.
8 - Server Timeou
t
This parameter sets the timer used by the switch to determine
authentication server timeout conditions. The default value for this
parameter is 30 seconds. The range is 1 to 600 seconds.
9 - Max Requests
This parameter specifies the maximum number of times that the switch
retransmits an EAP Request packet to the client before it times out the
authentication session. The default value for this parameter is 2
retransmissions. The range is 1 to 10 retransmissions.
A - VLAN Assignment
This parameter controls whether an authenticator port uses the VLAN
assignments returned by a RADIUS server. Options are:
Enabled
: Specifies that the authenticator port is to use the VLAN
assignment returned by the RADIUS server when a supplicant logs
on. This is the default setting. The port automatically moves to the
designated VLAN after the supplicant successfully logs on.
Disabled
: Specifies that the authenticator port ignore any VLAN
assignment information returned by the RADIUS server when a
supplicant logs on. The authenticator port remains in its predefined
VLAN assignment even if the RADIUS server returns a VLAN
assignment when a supplicant logs on. This is the default setting.
B - Secure VLAN
This parameter controls the action of an authenticator port to
subsequent authentications after the initial authentication where VLAN
assignments have been added to the user accounts on the RADIUS
server. This parameter only applies when the port is operating in the
Multiple operating mode. Possible settings are:
On
: Specifies that only those supplicants with the same VLAN
assignment as the initial supplicant are authenticated. Supplicants
with a different or no VLAN assignment are denied entry to the
port. This is the default setting.
Off
: Specifies that all supplicants, regardless of their assigned
VLANs, are authenticated. However, the port remains in the VLAN
Содержание AT-9400
Страница 16: ...Figures 16 ...
Страница 18: ...Tables 18 ...
Страница 28: ...Preface 28 ...
Страница 30: ...30 Section I Basic Operations ...
Страница 60: ...Chapter 1 Basic Switch Parameters 60 Section I Basic Operations ...
Страница 64: ...Chapter 2 Port Parameters 64 Section I Basic Operations Port Type The port type ...
Страница 84: ...Chapter 2 Port Parameters 84 Section I Basic Operations ...
Страница 124: ...Chapter 6 Static Port Trunks 124 Section I Basic Operations ...
Страница 144: ...144 Section II Advanced Operations ...
Страница 196: ...Chapter 10 File Downloads and Uploads 196 Section II Advanced Operations ...
Страница 218: ...Chapter 11 Event Logs and the Syslog Client 218 Section II Advanced Operations ...
Страница 242: ...Chapter 13 Access Control Lists 242 Section II Advanced Operations ...
Страница 294: ...294 Section III IGMP Snooping MLD Snooping and RRP Snooping ...
Страница 314: ...Chapter 19 MLD Snooping 314 Section III IGMP Snooping MLD Snooping and RRP Snooping ...
Страница 318: ...318 Section IV SNMPv3 ...
Страница 416: ...Chapter 21 SNMPv3 416 Section IV SNMPv3 ...
Страница 418: ...418 Section V Spanning Tree Protocols ...
Страница 470: ...470 Section VI Virtual LANs ...
Страница 478: ...Chapter 24 Port based and Tagged VLANs 478 Section VI Virtual LANs The new Sales VLAN has now been created ...
Страница 480: ...Chapter 24 Port based and Tagged VLANs 480 Section VI Virtual LANs The new Engineering VLAN has now been created ...
Страница 520: ...Chapter 26 Multiple VLAN Modes 520 Section VI Virtual LANs ...
Страница 532: ...Chapter 27 Protected Ports VLANs 532 Section VI Virtual LANs ...
Страница 546: ...546 Section VII Internet Protocol Routing ...
Страница 560: ...560 Section VIII Port Security ...
Страница 568: ...Chapter 30 MAC Address based Port Security 568 Section VIII Port Security ...
Страница 586: ...Chapter 31 802 1x Port based Network Access Control 586 Section VIII Port Security ...
Страница 588: ...588 Section IX Management Security ...
Страница 610: ...Chapter 33 Encryption Keys 610 Section IX Management Security ...
Страница 650: ...Chapter 36 TACACS and RADIUS Protocols 650 Section IX Management Security ...
Страница 660: ...Chapter 37 Management Access Control List 660 Section IX Management Security ...
Страница 668: ...Index 668 ...