Siemens SIMATIC NET SCALANCE SC-600 Configuration Manual page 302

Industrial ethernet security web based management (wbm)
Hide thumbs Also See for SIMATIC NET SCALANCE SC-600:
Table of Contents

Advertisement

Configuring with Web Based Management
4.7 "Security" menu
• Default VLAN ID
If a VLAN ID is transmitted to the RADIUS server during a successful authentication
and the "RADIUS VLAN Assignment Allowed" check box is selected, the current PVID
of the port is changed to the value transmitted by the RADIUS server. Otherwise, an
"Untagged membership" of the port may be set up in the relevant VLAN to enable
communication in the respective VLAN.
The Default VLAN ID determines the assignment of the VLAN ID when the "RADIUS
VLAN Assignment Allowed" check box is selected, but the RADIUS server does not
send a VLAN ID after successful authentication. You have two options:
– The value "0" is configured for the default VLAN ID
– A value in the range from "1 ... 4094" is configured for the Default VLAN ID
In all cases, a changed PVID is reset to the originally configured value after the device
logs out. Any "Port membership" that has been set up is deleted again. This applies to
both 802.1X authentication and MAC authentication.
• MAC Auth. Max Allowed Addresses
– 1 - 200
– 0
Configuration procedure
Enable authentication for an individual port
1. Select the required options in the relevant row in table 2.
2. To apply the changes, click the "Set Values" button.
Enable authentication for all ports
1. Select the required options in table 1.
2. Click the "Copy to Table" button. The relevant settings are adopted for all ports in table
2.
3. To apply the changes, click the "Set Values" button.
302
The PVID currently configured for the port continues to be used.
The PVID of the port is changed to the "Default VLAN ID" configured in this
column as if it had been transmitted by the RADIUS server.
Specify how many MAC addresses can communicate on the port at the same time.
Note
If a device uses several MAC addresses, all MAC addresses must be
authenticated. Store all the MAC addresses to be authenticated on the RADIUS
server. Enter the number in the "MAC Auth. Max Permitted Addresses" box.
You can set the value "0". This setting has the effect that after the first successful
authentication of a MAC address, the port is released for all MAC addresses.
SCALANCE SC-600 Web Based Management (WBM)
Configuration Manual, 10/2021, C79000-G8976-C475-03

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents