UMN:CLI
User Manual
V8102
300
8.5
802.1x Authentication
To enhance security and portability of network management, there are two ways of au-
thentication based on MAC address and port-based authentication which restrict clients
attempting to access to port.
In a word, port-based authentication (802.1x) decides to give access to a RADIUS server
having the information about user who tries to access.
802.1x authentication adopts EAP (Extensible Authentication Protocol) structure. In EAP
system, there are EAP-MD5 (Message Digest 5), EAP-TLS (Transport Level Security),
EAP-SRP (Secure Remote Password), EAP-TTLS (Tunneled TLS) and the V8102 sup-
ports EAP-MD5 and EAP-TLS.
Accessing with user’s ID and password, EAP-MD5 is 1-
way Authentication based on the password. EAP-TLS accesses through the mutual au-
thentication system of server authentication and personal authentication and it is possible
to guarantee high security because of mutual authentication system.
At a request of user Authentication, from user’s PC EAPOL-Start type of packets are
transmitted to authenticator and authenticator again requests identification. After getting
respond about identification, request to approve access to RADIUS server and be au-
thenticated by checking access through user’s information.
The following figure explains the process of 802.1x authentication.
Fig. 8.2
Process of 802.1x Authentication
Содержание V8102
Страница 1: ...1 V8102 GPON OLT system User Manual...
Страница 158: ...UMN CLI User Manual V8102 158 When you use the no snmp command all configurations of SNMP will be lost...
Страница 427: ...User Manual UMN CLI V8102 427 show debugging dhcp Enable Global Shows the debugging information of DHCP...
Страница 797: ...User Manual UMN CLI V8102 797 show onu gsp status config ONU_ID tag list number TAG_NAME tag name...