49
Chapter 5: Configuring Device Security
Defining 802.1x
SFE1000P Gigabit Ethernet Switch Reference Guide
Chapter
5
–
Checked
— Enables using a Guest VLAN for unauthorized ports. If a Guest VLAN is
enabled, the unauthorized port automatically joins the VLAN selected in the
VLAN List
field.
–
Unchecked
— Disables port-based authentication on the device. This is the default.
•
Enable Periodic Reauthentication
— Permits port reauthentication during the specified
Reauthentication Period (see below). The possible field values are:
–
Checked
— Enables immediate port reauthentication. This is the default value.
–
Unchecked
— Disables port reauthentication.
•
Reauthentication Period
— Specifies the number of seconds in which the selected port is
reauthenticated (Range: 300-4294967295). The field default is 3600 seconds.
•
Reauthenticate Now
— Specifies that authentication is applied on the device when the
Apply
button is pressed.
–
Checked
— Enables immediate port reauthentication.
–
Unchecked
— Port authentication according to the Reauthentication settings above.
•
Authenticator State
— Specifies the port authorization state. The possible field values are as
follows:
–
Force-Authorized
— The controlled port state is set to Force-Authorized (forward
traffic).
–
Force-Unauthorized
— The controlled port state is set to Force-Unauthorized (discard
traffic).
•
Quiet Period
— Specifies the number of seconds that the switch remains in the quiet state
following a failed authentication exchange (Range: 0-65535).
•
Resending EAP
— Specifies the number of seconds that the switch waits for a response to an
EAP - request/identity frame, from the supplicant (client), before resending the request.
•
Max
EAP Requests
— The total amount of EAP requests sent. If a response is not received
after the defined period, the authentication process is restarted. The field default is 2 retries.
•
Supplicant Timeout
— Displays the number of seconds that lapses before EAP requests are
resent to the supplicant (Range: 1-65535). The field default is 30 seconds.
•
Server Timeout
— Specifies the number of seconds that lapses before the switch resends a
request to the authentication server (Range: 1-65535). The field default is 30 seconds.
•
Termination Cause
— Indicates the reason for which the port authentication was terminated,
if applicable.