C
HAPTER
26
| General Security Measures
Network Access (MAC Address Authentication)
– 750 –
N
ETWORK
A
CCESS
(MAC A
DDRESS
A
UTHENTICATION
)
Network Access authentication controls access to the network by
authenticating the MAC address of each host that attempts to connect to a
switch port. Traffic received from a specific MAC address is forwarded by
the switch only if the source MAC address is successfully authenticated by
a central RADIUS server. While authentication for a MAC address is in
progress, all traffic is blocked until authentication is completed. Once
successfully authenticated, the RADIUS server may optionally assign VLAN
and QoS settings for the switch port.
Table 84: Network Access Commands
Command
Function
Mode
network-access aging
Enables MAC address aging
GC
network-access mac-filter
Adds a MAC address to a filter table
GC
mac-authentication reauth-
time
Sets the time period after which a connected MAC
address must be re-authenticated
GC
network-access dynamic-qos
Enables the dynamic quality of service feature
IC
network-access dynamic-vlan
Enables dynamic VLAN assignment from a RADIUS
server
IC
network-access guest-vlan
Specifies the guest VLAN
IC
network-access link-detection
Enables the link detection feature
IC
network-access link-detection
link-down
Configures the link detection feature to detect and
act upon link-down events
IC
network-access link-detection
link-up
Configures the link detection feature to detect and
act upon link-up events
IC
network-access link-detection
link-up-down
Configures the link detection feature to detect and
act upon both link-up and link-down events
IC
network-access max-mac-
count
Sets the maximum number of MAC addresses that
can be authenticated on a port via all forms of
authentication
IC
network-access mode mac-
authentication
Enables MAC authentication on an interface
IC
network-access port-mac-
filter
Enables the specified MAC address filter
IC
mac-authentication intrusion-
action
Determines the port response when a connected
host fails MAC authentication.
IC
mac-authentication max-
mac-count
Sets the maximum number of MAC addresses that
can be authenticated on a port via MAC
authentication
IC
clear network-access
Clears authenticated MAC addresses from the
address table
PE
show network-access
Displays the MAC authentication settings for port
interfaces
PE
show network-access mac-
address-table
Displays information for entries in the secure MAC
address table
PE
show network-access mac-
filter
Displays information for entries in the MAC filter
tables
PE
Содержание ECS4810-12M Layer 2
Страница 1: ...Management Guide www edge core com ECS4810 12M Layer 2 Gigabit Ethernet Switch...
Страница 2: ......
Страница 4: ......
Страница 6: ...ABOUT THIS GUIDE 6...
Страница 54: ...SECTION I Getting Started 54...
Страница 64: ...CHAPTER 1 Introduction System Defaults 64...
Страница 82: ...CHAPTER 2 Initial Switch Configuration Managing System Files 82...
Страница 84: ...SECTION II Web Configuration 84...
Страница 102: ...CHAPTER 3 Using the Web Interface Navigating the Web Browser Interface 102...
Страница 206: ...CHAPTER 6 VLAN Configuration Configuring VLAN Mirroring 206...
Страница 256: ...CHAPTER 11 Class of Service Layer 3 4 Priority Settings 256...
Страница 378: ...CHAPTER 14 Security Measures DHCP Snooping 378...
Страница 520: ...CHAPTER 16 IP Configuration Setting the Switch s IP Address IP Version 6 520...
Страница 528: ...CHAPTER 17 IP Services Displaying the DNS Cache 528...
Страница 586: ...CHAPTER 19 Using the Command Line Interface CLI Command Groups 586...
Страница 676: ...CHAPTER 22 SNMP Commands 676...
Страница 684: ...CHAPTER 23 Remote Monitoring Commands 684...
Страница 816: ...CHAPTER 27 Access Control Lists ACL Information 816...
Страница 866: ...CHAPTER 30 Port Mirroring Commands RSPAN Mirroring Commands 866...
Страница 883: ...CHAPTER 32 Automatic Traffic Control Commands 883 Trap Traffic Release Disabled Disabled Console...
Страница 884: ...CHAPTER 32 Automatic Traffic Control Commands 884...
Страница 890: ...CHAPTER 33 Address Table Commands 890...
Страница 986: ...CHAPTER 37 Class of Service Commands Priority Commands Layer 3 and 4 986...
Страница 1006: ...CHAPTER 38 Quality of Service Commands 1006...
Страница 1068: ...CHAPTER 39 Multicast Filtering Commands Multicast VLAN Registration 1068...
Страница 1092: ...CHAPTER 40 LLDP Commands 1092...
Страница 1134: ...CHAPTER 41 CFM Commands 1134...
Страница 1154: ...CHAPTER 43 Domain Name Service Commands 1154...
Страница 1160: ...CHAPTER 44 DHCP Commands DHCP Client 1160...
Страница 1194: ...CHAPTER 45 IP Interface Commands IPv6 Interface 1194...
Страница 1196: ...SECTION IV Appendices 1196...
Страница 1201: ...APPENDIX A Software Specifications Management Information Bases 1201 Trap RFC 1215 UDP MIB RFC 2013...
Страница 1202: ...APPENDIX A Software Specifications Management Information Bases 1202...
Страница 1224: ...COMMAND LIST 1224...
Страница 1234: ...INDEX 1234...
Страница 1235: ......
Страница 1236: ...ECS4810 12M E072011 ST R01 149100000142A...