
84
Figure 35 802.1X authentication process with the SmartOn feature
If the user attempts to use another 802.1X client for authentication, it will fail SmartOn authentication.
The access device stops 802.1X authentication for the user.
NOTE:
After you install the SmartOn client software, add two values
QX_ID
and
QX_PASSWORD
to the
Windows registry key [HKEY_LOCAL_MACHINE\SOFTWARE\Soliton Systems K.K.\SmartOn
Client\Clients\1XGate]. Specify the switch ID and password for the QX_ID and QX_PASSWORD,
respectively. The switch ID and password must be the same as the switch ID and password
configured on the device.
Configuration prerequisites
Before you configure 802.1X, complete the following tasks:
•
Configure an ISP domain and AAA scheme (local or RADIUS authentication) for 802.1X users.
•
If RADIUS authentication is used, create user accounts on the RADIUS server.
•
If local authentication is used, create local user accounts on the access device and set the
service type to
lan-access
.
NOTE:
You cannot use EAP relay if the RADIUS server does not support any EAP authentication methods
or local authentication is used.
802.1X configuration task list
Tasks at a glance
(Required.)
(Required.)
Enabling EAP relay or EAP termination
(Optional.)
Setting the port authorization state
(Optional.)
Содержание 10500 series
Страница 326: ...312 No duration limit for this SA ...