Configuring Security
Configuring 802.1X
Cisco 220 Series Smart Switches Administration Guide Release 1.1.0.x
209
16
NOTE
•
You can select the Guest VLAN field to have untagged incoming frames go
to the guest VLAN.
•
Define host authentication parameters for each port using the Port
Authentication page.
•
View 802.1X authentication history using the Authenticated Hosts page.
Defining 802.1X Properties
The 802.1X Properties page is used to globally enable 802.1X and define how
ports will be authenticated. For 802.1X to function, it must be activated both
globally and individually on each port.
STEP 1
Click Security > 802.1X > Properties.
STEP 2
Enter the parameters.
-
Port-Based Authentication—Enable or disable port-based, 802.1X
authentication.
-
Guest VLAN—Select to enable the use of a Guest VLAN for unauthorized
ports. If a Guest VLAN is enabled, all unauthorized ports automatically
join the VLAN selected in the Guest VLAN ID field. If a port is later
authorized, it is removed from the Guest VLAN.
-
Guest VLAN ID—Select the guest VLAN from the list of VLANs.
STEP 3
Click Apply. The 802.1X properties are modified, and the Running Configuration
file is updated.
Defining 802.1X Port Authentication
The Port Authentication page enables configuration of 802.1X parameters for each
port.
NOTE
A port with 802.1x defined on it cannot become a member of a LAG.
STEP 1
Click Security > 802.1X > Port Authentication.
STEP 2
Select a port, and click Edit.