Chapter 12
| Security Measures
Configuring 802.1X Port Authentication
– 296 –
◆
Re-authentication Status
– Sets the client to be re-authenticated after the
interval specified by the Re-authentication Period. Re-authentication can be
used to detect if a new device is plugged into a switch port. (Default: Disabled)
◆
Re-authentication Period
– Sets the time period after which a connected
client must be re-authenticated. (Range: 1-65535 seconds; Default: 3600
seconds)
◆
Re-authentication Max Retries
– The maximum number of times the switch
port will retransmit an EAP request/identity packet to the client before it times
out the authentication session. (Range: 1-10; Default: 2)
◆
Intrusion Action
– Sets the port’s response to a failed authentication.
■
Block Traffic
– Blocks all non-EAP traffic on the port. (This is the default
setting.)
■
Guest VLAN
– All traffic for the port is assigned to a guest VLAN. The guest
VLAN must be separately configured (See
) and mapped on each port (See
).
Supplicant List
◆
Supplicant
– MAC address of authorized client.
Authenticator PAE State Machine
◆
State
– Current state (including initialize, disconnected, connecting,
authenticating, authenticated, aborting, held, force_authorized,
force_unauthorized).
◆
Reauth Count
– Number of times connecting state is re-entered.
◆
Current Identifier
– Identifier sent in each EAP Success, Failure or Request
packet by the Authentication Server.
Backend State Machine
◆
State
– Current state (including request, response, success, fail, timeout, idle,
initialize).
◆
Request Count
– Number of EAP Request packets sent to the Supplicant
without receiving a response.
◆
Identifier (Server)
– Identifier carried in the most recent EAP Success, Failure or
Request packet received from the Authentication Server.
Содержание GEL-1061
Страница 14: ...Contents 14...
Страница 28: ...Section I Getting Started 28...
Страница 38: ...Chapter 1 Introduction System Defaults 38...
Страница 40: ...Section II Web Configuration 40...
Страница 60: ...Chapter 2 Using the Web Interface Navigating the Web Browser Interface 60...
Страница 164: ...Chapter 6 Address Table Settings Issuing MAC Address Traps 164...
Страница 192: ...Chapter 8 Congestion Control Storm Control 192...
Страница 204: ...Chapter 9 Class of Service Layer 3 4 Priority Settings 204...
Страница 216: ...Chapter 10 Quality of Service Attaching a Policy Map to a Port 216...
Страница 430: ...Chapter 14 Multicast Filtering MLD Snooping Snooping and Query for IPv4 430...
Страница 436: ...Chapter 15 IP Tools Address Resolution Protocol 436...
Страница 450: ...Chapter 16 IP Services Dynamic Host Configuration Protocol 450 Figure 301 Enabling Dynamic Provisioning via DHCP...
Страница 474: ...Section III Appendices 474...
Страница 492: ...Glossary 492...
Страница 500: ...E052016 ST R02 150200001416A...