KTI Networks KGS-2416 User Manual page 159

Managed 24-port gigabit ethernet switch with 24 sfp fiber support
Hide thumbs Also See for KGS-2416:
Table of Contents

Advertisement

8.
If user ID and password is correct, the authentication server will
send a Radius-Access-Accept to the authenticator. If not correct,
the authentication server will send a Radius-Access-Reject.
9.
When the authenticator PAE receives a Radius-Access-Accept, it
will send an EAP-Success to the supplicant. At this time, the
supplicant is authorized and the port connected to the supplicant
and under 802.1X control is in the authorized state. The supplicant
and other devices connected to this port can access the network. If
the authenticator receives a Radius-Access-Reject, it will send an
EAP-Failure to the supplicant. This means the supplicant is failed to
authenticate. The port it connected is in the unauthorized state, the
supplicant and the devices connected to this port won't be allowed
to access the network.
10.
When
the
Authentication server, the port you are using is set to be
unauthorized.
PC
Port connect
EAPOL-Start
EAP-Request/Identity
EAP-Response/Identity
EAP-Request
EAP-Response (cred)
EAP-Success
EAP-Failure
EAP-Logoff
supplicant
issue
Bridge
Access blocked
EAPOL
Authenticator
Access allowed
Fig. 3-55
155
an
EAP-Logoff
message
LAN
EAP
Radius-Access-Request
Radius-Access-Challenge
Radius-Access-Request
Radius-Access-Accept
to
Radius Server
Radius

Advertisement

Table of Contents
loading

Table of Contents