Access Control on the Wired Network
LAN Access Switch Topology with IEEE 802.1x Secure Access Control
67
Best Practice User Guide for the Catalyst 3850 and Catalyst 3650 Switch Series
LAN Access Switch Topology with IEEE 802.1x Secure Access
Control
Figure 9
LAN Access Switch Topology with IEEE 802.1x Secure Access Control
Securing Access Using 802.1x on a wired LAN
The following tasks are to be performed in the same order that is listed here.
•
Recommendations for Configuring Security on a Wired LAN
•
Provision Common Wired Security Access
•
•
•
•
Recommendations for Configuring Security on a Wired LAN
IEEE 802.1x permits or denies network connectivity based on the identity of users and devices. It
provides a link between the user name and IP address, MAC address, and a port on a switch. It also
provides customized network access based on the identity of the end device or user.
The main components of IEEE 802.1x are:
•
Supplicant (end device)
•
Authenticator (switch)
•
Authentication server (RADIUS or ISE)
Desktop user
direct connect
Desktop user
Printer
Catalyst 3850 stack in access
Voice VLAN 11
Data VLAN 10
Data VLAN 10
Switch management
VLAN 100
391703
Data VLAN 10
Authentication
Server
Содержание Catalyst 3850
Страница 2: ......
Страница 4: ......
Страница 10: ...Contents vi Cisco Catalyst 3850 Series and Cisco Catalyst 3650 Series Switches Best Practices Guide ...