This screen allows you to set the following features:
Parameter
Description
Unit
Choose the Switch ID number of the Switch in the switch stack to be modified.
From [ ] To [ ]
Enter the port or ports to be set.
AdmCtrlDir
Sets the administrative-controlled direction to either
in
or
both
.
If
in
is selected, control is only exerted over incoming traffic through the port you selected in the first field.
If
both
is selected, control is exerted over both incoming and outgoing traffic through the controlled port
selected in the first field.
PortControl
This allows you to control the port authorization state.
Select
forceAuthorized
to disable 802.1X and cause the port to transition to the authorized state without any
authentication exchange required.This means the port transmits and receives normal traffic without 802.1X-
based authentication of the client.
If
forceUnauthorized
is selected, the port will remain in the unauthorized state, ignoring all attempts by the client
to authenticate.The Switch cannot provide authentication services to the client through the interface.
If
Auto
is selected, it will enable 802.1X and cause the port to begin in the unauthorized state, allowing only
EAPOL frames to be sent and received through the port.The authentication process begins when the link state
of the port transitions from down to up, or when an EAPOL-start frame is received.The Switch then requests
the identity of the client and begins relaying authentication messages between the client and the authentication
server.
The default setting is
Auto.
TxPeriod
This sets the
TxPeriod
of time for the authenticator PAE state machine.This value determines the period of
an EAP Request/Identity packet transmitted to the client.The default setting is 30 seconds.
QuietPeriod
This allows you to set the number of seconds that the Switch remains in the quiet state following a failed
authentication exchange with the client.The default setting is 60 seconds.
SuppTimeout
This value determines timeout conditions in the exchanges between the Authenticator and the client.The
default setting is 30 seconds.
ServerTimeout
This value determines timeout conditions in the exchanges between the Authenticator and the authentication
server.The default setting is 30 seconds.
MaxReq
The maximum number of times that the Switch will retransmit an EAP Request to the client before it times out
of the authentication sessions.The default setting is 2.
ReAuthPeriod
A constant that defines a nonzero number of seconds between periodic reauthentication of the client.The
default setting is 3600 seconds.
ReAuth
Determines whether regular reauthentication will take place on this port.The default setting is Disabled.
Click
Apply
to implement your configuration changes.To view configurations for the
802.1X Authenticator Settings
on a port-by-port basis, see the
802.1X Authenticator Settings
table.
Local Users
In the configuration folder, open the
Port Access Entity
folder and click
Local users
to open the
802.1x Local User Table Configuration
window.
This window will allow the user to set different local users on the Switch.
Figure 6- 77. 802.1x Local User Table Configuration and 802.1x Local User Table window
Enter a
User Name
,
Password
and confirmation of that password. Properly configured local users will be displayed in the
802.1x Local User Table
in
the same window.
87
Allied Telesyn AT-9724TS High-Density Layer 3 Stackable Gigabit Ethernet Switch