![Atop EH9711 Series Скачать руководство пользователя страница 65](http://html1.mh-extra.com/html/atop/eh9711-series/eh9711-series_user-manual_3004814065.webp)
Industrial Managed
Ethernet Switch – EH9711
User Manual
Page
65
of
223
Label
Description
Factory Default
VLAN configuration.
Guest VLAN Operation:
When a Guest VLAN enabled port's link comes up, the switch starts
transmitting EAPOL Request Identity frames. If the number of
transmissions of such frames exceeds Max. Reauth. Count and no EAPOL
frames have been received in the meanwhile, the switch considers entering
the Guest VLAN. The interval between transmission of EAPOL Request
Identity frames is configured with EAPOL Timeout. If Allow Guest
VLAN if EAPOL Seen is enabled, the port will now be placed in the Guest
VLAN. If disabled, the switch will first check its history to see if an
EAPOL frame has previously been received on the port (this history is
cleared if the port link goes down or the port's Admin State is changed),
and if not, the port will be placed in the Guest VLAN. Otherwise it will
not move to the Guest VLAN, but continue transmitting EAPOL Request
Identity frames at the rate given by EAPOL Timeout.
Once in the Guest VLAN, the port is considered authenticated, and all
attached clients on the port are allowed access on this VLAN. The switch
will not transmit an EAPOL Success frame when entering the Guest
VLAN.
While in the Guest VLAN, the switch monitors the link for EAPOL
frames, and if one such frame is received, the switch immediately takes the
port out of the Guest VLAN and starts authenticating the supplicant
according to the port mode. If an EAPOL frame is received, the port will
never be able to go back into the Guest VLAN if the "Allow Guest VLAN
if EAPOL Seen" is disabled.
Port Status
The current state of the port. It can undertake one of the following values:
Globally Disabled:
NAS is globally disabled.
Link Down:
NAS is globally enabled, but there is no link on the port.
Authorized:
The port is in Force Authorized or a single-supplicant mode
and the supplicant is authorized.
Unauthorized:
The port is in Force Unauthorized or a single-supplicant
mode and the supplicant is not successfully authorized by the RADIUS
server.
X Auth/Y Unauth:
The port is in a multi-supplicant mode. Currently X
clients are authorized and Y are unauthorized.
Globally Disabled
Restart
Two buttons are available for each row. The buttons are only enabled
when authentication is globally enabled and the port's Admin State is in an
EAPOL-based mode.
Clicking these buttons will not cause settings changed on the page to take
effect.
Reauthenticate:
Schedules a reauthentication whenever the quiet-period
of the port runs out (EAPOL-based authentication).
The button only has effect for successfully authenticated clients on the port
and will not cause the clients to get temporarily unauthorized.
Reinitialize:
Forces a reinitialization of the clients on the port and thereby
a reauthentication immediately. The clients will transfer to the
unauthorized state while the reauthentication is in progress.
-
Click
Refresh
button to refresh the page. Click
Save
button to save changes. Click
Reset
button to undo any changes made
locally and revert to previously saved values.
2.5.2.4
ACL
ACL
is an acronym for Access Control List. It is the list table of ACEs, containing Access Control Entries that specify
individual users or groups permitted or denied to specific traffic objects, such as a process or a program. Each accessible
traffic object contains an identifier to its ACL. The privileges determine whether there are specific traffic object access rights.