802.1X Global Settings - D-Link DGS-3000 Series Reference Manual

Hide thumbs Also See for DGS-3000 Series:
Table of Contents

Advertisement

DGS-3000 Series Gigabit Ethernet Switch Web UI Reference Guide
become Unauthorized. Hence, if the Port is actually connected to a shared media LAN segment with more than one
attached device, successfully authenticating one of the attached devices effectively provides access to the LAN for all
devices on the shared segment. Clearly, the security offered in this situation is open to attack.
Figure 8-7 Example of Typical Port-based Configuration
Host-based Network Access Control
In order to successfully make use of 802.1X in a shared media LAN segment, it would be necessary to create "logical"
Ports, one for each attached device that required access to the LAN. The Switch would regard the single physical Port
connecting it to the shared media segment as consisting of a number of distinct logical Ports, each logical Port being
independently controlled from the point of view of EAPOL exchanges and authorization state. The Switch learns each
attached devices' individual MAC addresses, and effectively creates a logical Port that the attached device can then
use to communicate with the LAN via the Switch.
Figure 8-8 Example of Typical Host-based Configuration

802.1X Global Settings

Users can configure the 802.1X global parameter.
209

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents