Implementing 802.1X On The Ethernet Switch; Configuring 802.1X - Huawei Quidway S3500 Series Operation Manual

Hide thumbs Also See for Quidway S3500 Series:
Table of Contents

Advertisement

Operation Manual - Security
Quidway S3500 Series Ethernet Switches
802.1x provides an implementation solution of user ID authentication. However, 802.1x
itself is not enough to implement the scheme. The administrator of the access device
should configure the AAA scheme by selecting RADIUS or local authentication so as to
assist 802.1x to implement the user ID authentication. For detailed description of AAA,
refer to the corresponding AAA configuration.

1.1.4 Implementing 802.1x on the Ethernet Switch

Quidway Series Ethernet Switches not only support the port access authentication
method regulated by 802.1x, but also extend and optimize it in the following way:
Support to connect several End Stations in the downstream via a physical port.
The access control (or the user authentication method) can be based on port or
MAC address.
In this way, the system becomes much securer and easier to manage.

1.2 Configuring 802.1x

The configuration tasks of 802.1x itself can be fulfilled in system view of the Ethernet
switch. When the global 802.1x is not enabled, the user can configure the 802.1x state
of the port. The configured items will take effect after the global 802.1x is enabled.
Note:
When 802.1x is enabled on a port, the max number of MAC address learning which is
configured by the command mac-address max-mac-count cannot be configured on
the port, and vice versa.
The Main 802.1x configuration includes:
Enabling/disabling 802.1x
Setting the port access control mode
Setting the port access control method
Checking the users that log on the switch via proxy
Setting the maximum number of users via each port
Setting the Authentication in DHCP Environment
Configuring the authentication method for 802.1x user
Enabling/Disabling Guest VLAN
Setting 802.1x Re-authentication
Setting 802.1x Client Version Authentication
Setting the maximum times of authentication request message retransmission
Configuring timers
Enabling/disabling a quiet-period timer
Huawei Technologies Proprietary
1-3
Chapter 1 802.1x Configuration

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents