Configuring 802.1x Security
113
Chapter 8
The machine credentials can be cached and reused between re-auths so the Switch does not
have to authenticate every time it reloads. The variable that controls this is the Machine
Authentication Cache Timeout.
To set the value of the
Machine Authentication Cache Timeout :
1
Click
Show
on the right of the
Advanced Configuration
section.
2
Set the value of the
Machine Authentication Cache Timeout
to the desired value.
The default value is 24 hours.
N
OTE
—
The Advanced Configuration settings should not be modified unless there
is a need to customize at a more detailed level.
The Authentication server to which the switch will send authentication requests needs to
be configured in addition to the 802.1x settings. To configure the authentication servers:
Machine
Authentication
Default Role
The role and policies that will
be applied if the machine
authentication goes through
but the user authentication has
not yet been initiated.
Default:
guest
Pull down
menu of pre-
configured
roles
Select the role that
needs to be applied if
only machine
authentication is
complete.
Good policy is to have
different access rights
for this role from the
other two roles.
User
Authentication
Default Role
The role and policies that will
be applied if the machine
authentication did not go
through but the user
authentication succeeded.
Default: guest
Pull down
menu of pre-
configured
roles
Select the role that
needs to be applied if
only machine
authentication is
complete.
Good policy is to have
different access rights
for this role from the
other two roles.
Authentication
Failure Threshold
for Station
Blacklisting
This is a security feature. This
specifies the number of times
a user can try to login with
wrong credentials after which
the user will be blacklisted as
a security threat.
Default: 3
Integer
Set value to 0 to disable
blacklisting.
Set to a non zero integer
value to blacklist after
the specified number of
failures.
Содержание AirOS v2.3
Страница 10: ...x Aruba AirOS Part 0500036 02 v2 3 User Guide January 2005...
Страница 28: ...18 Aruba AirOS Part 0500036 02 v2 3 User Guide January 2005...
Страница 42: ...32 Aruba AirOS Part 0500036 02 v2 3 User Guide January 2005...
Страница 76: ...66 Aruba AirOS Part 0500036 02 v2 3 User Guide January 2005...
Страница 92: ...82 Aruba AirOS Part 0500036 02 v2 3 User Guide January 2005...
Страница 107: ...Configuring the Captive Portal 97 Chapter 7...
Страница 111: ...Configuring 802 1x Security 101 Chapter 8 The following fields need to be modified for wireless user authentication...
Страница 136: ...126 Aruba AirOS Part 0500036 02 v2 3 User Guide January 2005...
Страница 148: ...138 Aruba AirOS Part 0500036 02 v2 3 User Guide January 2005 Configure L2TP IPSec 1 Configure the DNS and WINS server...
Страница 155: ...Configuring Virtual Private Networks 145 Chapter 9...
Страница 156: ...146 Aruba AirOS Part 0500036 02 v2 3 User Guide January 2005...
Страница 199: ...System and Network Management 189 Chapter 11 5 Click Done to make the modification...
Страница 212: ...202 Aruba AirOS Part 0500036 02 v2 3 User Guide January 2005...
Страница 232: ...222 Aruba AirOS Part 0500036 02 v2 3 User Guide January 2005 FIGURE 14 15 Configuring Captive Portal Authentication...
Страница 244: ...234 Aruba AirOS Part 0500036 02 v2 3 User Guide January 2005 FIGURE 15 17 Configuring Captive Portal Authentication...
Страница 246: ...236 Aruba AirOS Part 0500036 02 v2 3 User Guide January 2005...
Страница 254: ...244 Aruba AirOS Part 0500036 02 v2 3 User Guide January 2005...