C
HAPTER
14
| Security Measures
Configuring 802.1X Port Authentication
– 342 –
ES-4500G Series
◆
Max MAC Count
– The maximum number of hosts that can connect to
a port when the Multi-Host operation mode is selected.
(Range: 1-1024; Default: 5)
◆
Max Request
– Sets the maximum number of times the switch port
will retransmit an EAP request packet to the client before it times out
the authentication session. (Range: 1-10; Default 2)
◆
Quiet Period
– Sets the time that a switch port waits after the Max
Request Count has been exceeded before attempting to acquire a new
client. (Range: 1-65535 seconds; Default: 60 seconds)
◆
Tx Period
– Sets the time period during an authentication session that
the switch waits before re-transmitting an EAP packet.
(Range: 1-65535; Default: 30 seconds)
◆
Supplicant Timeout
– Sets the time that a switch port waits for a
response to an EAP request from a client before re-transmitting an EAP
packet. (Range: 1-65535; Default: 30 seconds)
This command attribute sets the timeout for EAP-request frames other
than EAP-request/identity frames. If dot1x authentication is enabled on
a port, the switch will initiate authentication when the port link state
comes up. It will send an EAP-request/identity frame to the client to
request its identity, followed by one or more requests for authentication
information. It may also send other EAP-request frames to the client
during an active connection as required for reauthentication.
◆
Server Timeout
– Sets the time that a switch port waits for a response
to an EAP request from an authentication server before re-transmitting
an EAP packet. (Fixed Setting: 10 seconds)
◆
Re-authentication Status
– Sets the client to be re-authenticated
after the interval specified by the Re-authentication Period. Re-
authentication can be used to detect if a new device is plugged into a
switch port. (Default: Disabled)
◆
Re-authentication Period
– Sets the time period after which a
connected client must be re-authenticated. (Range: 1-65535 seconds;
Default: 3600 seconds)
◆
Intrusion Action
– Sets the port’s response to a failed authentication.
■
Block Traffic
– Blocks all non-EAP traffic on the port. (This is the
default setting.)
■
Guest VLAN
– All traffic for the port is assigned to a guest VLAN.
The guest VLAN must be separately configured (See
) and mapped on each port (See
"Configuring Network Access for Ports" on page 290
Authenticator PAE State Machine
Содержание iPECS ES-4526G
Страница 1: ...USER GUIDE User Manual ES 4550G ES 4526G Managed Layer 3 Stackable GE Switch ...
Страница 38: ...CONTENTS 38 ES 4500G Series ...
Страница 58: ...SECTION I Getting Started 58 ES 4500G Series ...
Страница 70: ...CHAPTER 1 Introduction System Defaults 70 ES 4500G Series ...
Страница 84: ...CHAPTER 2 Initial Switch Configuration Managing System Files 84 ES 4500G Series Success Console ...
Страница 86: ...SECTION I Web Configuration 86 ES 4500G Series Multicast Filtering on page 413 ...
Страница 196: ...CHAPTER 6 VLAN Configuration Configuring MAC based VLANs 196 ES 4500G Series ...
Страница 204: ...CHAPTER 7 Address Table Settings Clearing the Dynamic Address Table 204 ES 4500G Series ...
Страница 228: ...CHAPTER 8 Spanning Tree Algorithm Configuring Interface Settings for MSTP 228 ES 4500G Series ...
Страница 230: ...CHAPTER 9 Rate Limit Configuration 230 ES 4500G Series Figure 106 Configuring Rate Limits ...
Страница 260: ...CHAPTER 12 Quality of Service Attaching a Policy Map to a Port 260 ES 4500G Series ...
Страница 478: ...CHAPTER 17 IP Configuration Setting the Switch s IP Address IP Version 6 478 ES 4500G Series ...
Страница 528: ...CHAPTER 20 IP Services Forwarding UDP Service Requests 528 ES 4500G Series ...
Страница 584: ...CHAPTER 21 Unicast Routing Configuring the Open Shortest Path First Protocol Version 2 584 ES 4500G Series ...
Страница 614: ...CHAPTER 22 Multicast Routing Configuring PIMv6 for IPv6 614 ES 4500G Series ...
Страница 628: ...CHAPTER 23 Using the Command Line Interface CLI Command Groups 628 ES 4500G Series ...
Страница 702: ...CHAPTER 26 SNMP Commands 702 ES 4500G Series ...
Страница 710: ...CHAPTER 27 Remote Monitoring Commands 710 ES 4500G Series ...
Страница 868: ...CHAPTER 34 Port Mirroring Commands Local Port Mirroring Commands 868 ES 4500G Series ...
Страница 890: ...CHAPTER 37 Address Table Commands 890 ES 4500G Series ...
Страница 1066: ...CHAPTER 43 LLDP Commands 1066 ES 4500G Series ...
Страница 1076: ...CHAPTER 44 Domain Name Service Commands 1076 ES 4500G Series ...
Страница 1286: ...CHAPTER 49 Multicast Routing Commands PIM Multicast Routing 1286 ES 4500G Series ...
Страница 1288: ...SECTION I Appendices 1288 ES 4500G Series ...
Страница 1293: ...APPENDIX A Software Specifications Management Information Bases 1293 ES 4500G Series UDP MIB RFC 2013 ...
Страница 1294: ...APPENDIX A Software Specifications Management Information Bases 1294 ES 4500G Series ...
Страница 1327: ...ES 4526G ES 4550G E042011 ST R01 150200000149A ...
Страница 1328: ...APRIL 2011 ISSUE 1 0 ...