C H A P T E R
10-1
Catalyst 2975 Switch Software Configuration Guide
OL-19720-02
10
Configuring IEEE 802.1x Port-Based
Authentication
IEEE 802.1x port-based authentication prevents unauthorized devices (clients) from gaining access to
the network. Unless otherwise noted, the term
switch
refers to a standalone switch and to a switch stack.
The Catalyst 2975 switch command reference and the “RADIUS Commands” section in the Cisco IOS
Security Command Reference, Release 12.2, have command syntax and usage information.
This chapter includes these sections:
•
Understanding IEEE 802.1x Port-Based Authentication, page 10-1
•
Configuring 802.1x Authentication, page 10-32
•
Displaying 802.1x Statistics and Status, page 10-67
Understanding IEEE 802.1x Port-Based Authentication
The standard defines a client-server-based access control and authentication protocol to prevent
unauthorized clients from connecting to a LAN through publicly accessible ports.The authentication
server authenticates each client connected to a switch port before making available any switch or LAN
services.
Until the client is authenticated, IEEE 802.1x access control allows only Extensible Authentication
Protocol over LAN (EAPOL), Cisco Discovery Protocol (CDP), and Spanning Tree Protocol (STP)
traffic through the port to which the client is connected. After authentication, normal traffic passes
through the port.
•
•
Authentication Process, page 10-3
•
Authentication Initiation and Message Exchange, page 10-5
•
Authentication Manager, page 10-7
•
Ports in Authorized and Unauthorized States, page 10-10
•
802.1x Authentication and Switch Stacks, page 10-11
•
•
Multidomain Authentication, page 10-12
•
802.1x Multiple Authentication Mode, page 10-13
•
Содержание 2975 - Catalyst LAN Base Switch
Страница 36: ...Contents xxxvi Catalyst 2975 Switch Software Configuration Guide OL 19720 02 ...
Страница 40: ...xxxviii Catalyst 2975 Switch Software Configuration Guide OL 19720 02 Preface ...
Страница 62: ...1 22 Catalyst 2975 Switch Software Configuration Guide OL 19720 02 Chapter 1 Overview Where to Go Next ...
Страница 398: ...13 30 Catalyst 2975 Switch Software Configuration Guide OL 19720 02 Chapter 13 Configuring VLANs Configuring VMPS ...
Страница 424: ...15 18 Catalyst 2975 Switch Software Configuration Guide OL 19720 02 Chapter 15 Configuring VTP Monitoring VTP ...
Страница 628: ...26 8 Catalyst 2975 Switch Software Configuration Guide OL 19720 02 Chapter 26 Configuring UDLD Displaying UDLD Status ...
Страница 660: ...28 8 Catalyst 2975 Switch Software Configuration Guide OL 19720 02 Chapter 28 Configuring RMON Displaying RMON Status ...
Страница 888: ...38 32 Catalyst 2975 Switch Software Configuration Guide OL 19720 02 Chapter 38 Troubleshooting Troubleshooting Tables ...