Configuring Device Security
Defining 802.1X
Cisco Small Business SFE/SGE Managed Switches Administration Guide
90
4
Edit Authentication Page
The
Edit Authentication Page
contains the following fields:
•
Port — Displays the port number for which advanced port-based
authentication is enabled.
•
Host Authentication— Defines the Host Authentication mode. The possible
field values are:
-
Single
— Only the authorized host can access the port.
-
Multiple Host
— Multiple hosts can be attached to a single 802.1x-
enabled port. Only one host must be authorized for all hosts to access
the network. If the host authentication fails, or an EAPOL-logoff message
is received, all attached clients are denied access to the network.
-
Multi Session
— Enables number of specific authorized hosts to get
access to the port. Filtering is based on the source MAC address.
•
Action on Violation — Defines the action to be applied to packets arriving in
single-host mode, from a host whose MAC address is not the supplicant MAC
address. The possible field values are:
-
Discard
— Discards the packets. This is the default value.
-
Forward
— Forwards the packet.
-
Shutdown
— Discards the packets and shuts down the port. The ports
remains shut down until reactivated, or until the device is reset.
•
Enable Traps — Indicates if traps are enabled for Multiple Hosts. The possible
field values are:
-
Checked
— Indicates that traps are enabled for Multiple hosts.
-
Unchecked
— Indicates that traps are disabled for Multiple hosts.