Configuring Port-Based and Client-Based Access Control (802.1X)
Configuring Switch Ports as 802.1X Authenticators
B. Specify Client-Based or Return to Port-Based 802.1X
Authentication
Client-Based 802.1X Authentication.
Syntax:
aaa port-access authenticator client-limit <
port-list
> < 1 - 32 >
Used after executing
aaa port-access authenticator <
port-list
>
(above) to convert authentication from port-based to client
based
.
Specifies client-based 802.1X authentication and the
maximum number of 802.1X-authenticated client sessions
allowed on each of the ports in
<
port-list
>.
If a port currently
has no authenticated client sessions, the next authenticated
client session the port accepts determines the untagged
VLAN membership to which the port is assigned during the
session. If another client session begins later on the same
port while an earlier session is active, the later session will
be on the same untagged VLAN membership as the earlier
session.
Note:
Because a switch allows 802.1X authentication and
Web or MAC authentication to co-exist on the same port, the
sum of authenticated client sessions allowed on a given port
for both 802.1X and either Web- or MAC-authentication
cannot exceed 32.
Port-Based 802.1X Authentication.
no aaa port-access authenticator client-limit
Used to convert a port from client-based authentication to
port-based authentication, which is the default setting for
ports on which authentication is enabled. (Executing
aaa
port-access authenticator <
port-list
>
enables 802.1X authenti
cation on
<
port-list
>
and enables port-based authentica
tion—page 10-17.) If a port currently has no authenticated
client sessions, the next authenticated client session the port
accepts determines the untagged VLAN membership to
which the port is assigned during the session. If another
authenticated client session begins later on the same port
while an earlier session is active, the later session replaces
the currently active session and will be on the untagged
VLAN membership specified by the RADIUS server for the
later session.
10-18
Содержание J8697A
Страница 1: ...6200yl Access Security Guide 5400zl 3500yl ProCurve Switches K 11 XX www procurve com ...
Страница 2: ......
Страница 22: ...Product Documentation Feature Index xx ...
Страница 55: ...Configuring Username and Password Security Front Panel Security 2 21 ...
Страница 56: ...Configuring Username and Password Security Front Panel Security 2 22 ...
Страница 58: ...Virus Throttling Contents Operating Notes 3 30 Connection Rate Log and Trap Messages 3 31 3 2 ...
Страница 88: ...Virus Throttling Connection Rate Log and Trap Messages This page is intentionally unused 3 32 ...
Страница 118: ...Web and MAC Authentication Client Status This page intentionally unused 4 30 ...
Страница 230: ...Configuring Secure Socket Layer SSL Common Errors in SSL setup This page is intentionally unused 8 22 ...
Страница 356: ...Configuring and Monitoring Port Security Operating Notes for Port Security 11 44 ...
Страница 370: ...Using Authorized IP Managers Operating Notes This page is intentionally unused 12 14 ...
Страница 388: ...10 Index ...
Страница 389: ......