Configuration Guide
802.1x Configuration
Releasing Advertisement
Our 802.1x allows you to configure the Reply-Message field on the Radius Server. When authentication succeeds, the
information of the field is shown on our 802.1x client of Star-Supplicant, by which the operators can release some
information.
Such information is shown at the first user authorization, but not at re-authentication. This avoids frequently disturbing the
user.
The window for showing the advertisement information supports html, which converts the http://XXX.XXX.XX in the
message into links capable of direct switching, for easier browsing.
Releasing of the advertising information:
The operator configures the Reply Message attribute on the Radius Server end.
Only our Star-supplicant client supports such information (free for the users of our switch), while other clients cannot
see the information, which however does not affect their normal use.
No setting is required at the device end.
List of Authenticable Hosts under a Port
For enhanced security of the 802.1x, we have made expansion without affecting the IEEE 802.1x, allowing the NM to
restrict the list of hosts authenticated of a port. If the list of hosts authenticated of a port is empty, any user can be
authenticated. If the list is not empty, only the hosts in the list can be authenticated. The hosts that can be authenticated
are identified by using the MAC addresses.
The following example adds/deletes the hosts that can be authenticated under a port.
Command
Function
configure terminal
Enter global configuration mode.
dot1x
auth-address-table
address
mac-addr
interface
interface
Set the list of the hosts that can be authenticated.
end
Return to the privileged EXEC mode.
write
Save the configuration.
show running-config
Show the configuration.
If the list of the host is empty, the port allows any host to be authenticated.
Authorization
To make it easier for operators, our products can provide services of different qualities for different types of services, for
example, offering different maximum bandwidths. Such information is all stored on the Radius Server, and the
administrator does not need to configure every switch.
Since the Radius has no standard attribute to represent the maximum data rate, we can only transfer the authorization
information by the manufacturer customized attribute.
The general format of the definition is as follows:
Содержание RG-S2900G-E Series
Страница 1: ...RG S2900G E Series Switch RGOS Configuration Guide Release 10 4 2b12 p1 ...
Страница 91: ...Configuration Guide Configuring PoE Configuration ...
Страница 133: ...Configuration Guide EEE Configuration ...
Страница 319: ...Configuration Guide QinQ Configuration ...
Страница 408: ......
Страница 409: ...IP Routing Configuration 1 Static Route Configuration ...
Страница 412: ......
Страница 413: ...Multicast Configuration 1 IGMP Snooping Configuration 2 MLD Snooping Configuration ...
Страница 621: ...Configuration Guide CPU Protection Configuration udp helper 180 4 dhcp client 180 4 lacp 180 4 ...
Страница 757: ......
Страница 758: ...ACL QoS Configuration 1 Access Control List Configuration 2 QoS Configuration ...
Страница 801: ...Reliability Configuration 1 RLDP Configuration 2 TPP Configuration 3 SEM Configuration ...
Страница 901: ...Configuration Guide ERSPAN Configuration ...
Страница 902: ...Web based Configuration 1 Web based Configuration ...