Controlled/Uncontrolled Port And Port Authorization Status; Packet Formats - HP FlexNetwork NJ5000 User Manual

5g poe+ walljack
Table of Contents

Advertisement

Controlled/uncontrolled port and port authorization status

802.1X defines two logical ports for the network access port: controlled port and uncontrolled port.
Any packet arriving at the network access port is visible to both logical ports.
Controlled port—Allows incoming and outgoing traffic to pass through when it is in the
authorized state, and denies incoming and outgoing traffic when it is in the unauthorized state,
as shown in
authentication, and in unauthorized state, if the client has failed authentication.
Uncontrolled port—Is always open to receive and transmit EAPOL frames.
Figure 264 Authorization state of a controlled port
Authenticator system 1
Controlled port
In the unauthorized state, a controlled port controls traffic in one of the following ways:
Performs bidirectional traffic control to deny traffic to and from the client.
Performs unidirectional traffic control to deny traffic from the client.
The device supports only unidirectional traffic control.

Packet formats

EAP packet format
Figure 265
Figure 265 EAP packet format
0
Code
Code—Type of the EAP packet. Options include Request (1), Response (2), Success (3), or
Failure (4).
Identifier—Used for matching Responses with Requests.
Length—Length (in bytes) of the EAP packet. The length is the sum of the Code, Identifier,
Length, and Data fields.
Figure
264. The controlled port is set in authorized state if the client has passed
Uncontrolled port
Port unauthorized
LAN
shows the EAP packet format.
7
Identifier
Length
Data
Authenticator system 2
Controlled port
Port authorized
LAN
15
2
4
N
253
Uncontrolled port

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents