114
NE2552E Application Guide for ENOS 8.4
Extensible Authentication Protocol over LAN
Lenovo
ENOS
can
provide
user
‐
level
security
for
its
ports
using
the
IEEE
802.1X
protocol,
which
is
a
more
secure
alternative
to
other
methods
of
port
‐
based
network
access
control.
Any
device
attached
to
an
802.1X
‐
enabled
port
that
fails
authentication
is
prevented
access
to
the
network
and
denied
services
offered
through
that
port.
The
802.1X
standard
describes
port
‐
based
network
access
control
using
Extensible
Authentication
Protocol
over
LAN
(EAPoL).
EAPoL
provides
a
means
of
authenticating
and
authorizing
devices
attached
to
a
LAN
port
that
has
point
‐
to
‐
point
connection
characteristics
and
of
preventing
access
to
that
port
in
cases
of
authentication
and
authorization
failures.
EAPoL
is
a
client
‐
server
protocol
that
has
the
following
components:
Supplicant
or
Client
The
Supplicant
is
a
device
that
requests
network
access
and
provides
the
required
credentials
(user
name
and
password)
to
the
Authenticator
and
the
Authenticator
Server.
Authenticator
The
Authenticator
enforces
authentication
and
controls
access
to
the
network.
The
Authenticator
grants
network
access
based
on
the
information
provided
by
the
Supplicant
and
the
response
from
the
Authentication
Server.
The
Authenticator
acts
as
an
intermediary
between
the
Supplicant
and
the
Authentication
Server:
requesting
identity
information
from
the
client,
forwarding
that
information
to
the
Authentication
Server
for
validation,
relaying
the
server’s
responses
to
the
client,
and
authorizing
network
access
based
on
the
results
of
the
authentication
exchange.
The
NE2552E
acts
as
an
Authenticator.
Authentication
Server
The
Authentication
Server
validates
the
credentials
provided
by
the
Supplicant
to
determine
if
the
Authenticator
should
grant
access
to
the
network.
The
Authentication
Server
may
be
co
‐
located
with
the
Authenticator.
The
NE2552E
relies
on
external
RADIUS
servers
for
authentication.
Upon
a
successful
authentication
of
the
client
by
the
server,
the
802.1X
‐
controlled
port
transitions
from
unauthorized
to
authorized
state,
and
the
client
is
allowed
full
access
to
services
through
the
port.
When
the
client
sends
an
EAP
‐
Logoff
message
to
the
authenticator,
the
port
will
transition
from
authorized
to
unauthorized
state.
Содержание ThinkSystem NE2552E
Страница 27: ... Copyright Lenovo 2018 27 Part 1 Getting Started ...
Страница 28: ...28 NE2552E Application Guide for ENOS 8 4 ...
Страница 70: ...70 NE2552E Application Guide for ENOS 8 4 ...
Страница 85: ... Copyright Lenovo 2018 85 Part 2 Securing the Switch ...
Страница 86: ...86 NE2552E Application Guide for ENOS 8 4 ...
Страница 112: ...112 NE2552E Application Guide for ENOS 8 4 ...
Страница 134: ...134 NE2552E Application Guide for ENOS 8 4 ...
Страница 154: ...154 NE2552E Application Guide for ENOS 8 4 ...
Страница 194: ...194 NE2552E Application Guide for ENOS 8 4 ...
Страница 218: ...218 NE2552E Application Guide for ENOS 8 4 ...
Страница 234: ...234 NE2552E Application Guide for ENOS 8 4 ...
Страница 238: ...238 NE2552E Application Guide for ENOS 8 4 ...
Страница 239: ... Copyright Lenovo 2018 239 Part 4 Advanced Switching Features ...
Страница 240: ...240 NE2552E Application Guide for ENOS 8 4 ...
Страница 242: ...242 NE2552E Application Guide for ENOS 8 4 ...
Страница 278: ...278 NE2552E Application Guide for ENOS 8 4 ...
Страница 284: ...284 NE2552E Application Guide for ENOS 8 4 ...
Страница 314: ...314 NE2552E Application Guide for ENOS 8 4 ...
Страница 338: ...338 NE2552E Application Guide for ENOS 8 4 ...
Страница 374: ...374 NE2552E Application Guide for ENOS 8 4 ...
Страница 388: ...388 NE2552E Application Guide for ENOS 8 4 ...
Страница 418: ...418 NE2552E Application Guide for ENOS 8 4 ...
Страница 430: ...430 NE2552E Application Guide for ENOS 8 4 ...
Страница 432: ...432 NE2552E Application Guide for ENOS 8 4 ...
Страница 436: ...436 NE2552E Application Guide for ENOS 8 4 ...
Страница 460: ...460 NE2552E Application Guide for ENOS 8 4 ...
Страница 461: ... Copyright Lenovo 2018 461 Part 7 Network Management ...
Страница 462: ...462 NE2552E Application Guide for ENOS 8 4 ...
Страница 476: ...476 NE2552E Application Guide for ENOS 8 4 ...
Страница 498: ...498 NE2552E Application Guide for ENOS 8 4 ...
Страница 520: ...520 NE2552E Application Guide for ENOS 8 4 ...
Страница 534: ...534 NE2552E Application Guide for ENOS 8 4 ...
Страница 536: ...536 NE2552E Application Guide for ENOS 8 4 ...
Страница 544: ...544 NE2552E Application Guide for ENOS 8 4 ...
Страница 549: ... Copyright Lenovo 2018 549 Part 9 Appendices ...
Страница 550: ...550 NE2552E Application Guide for ENOS 8 4 ...
Страница 566: ...566 NE2552E Application Guide for ENOS 8 4 ...
Страница 572: ...572 NE2552E Application Guide for ENOS 8 4 ...
Страница 573: ......
Страница 574: ...Part Number 01KN246 Printed in USA IP P N 01KN246 ...