Port Authentication; Chapter 18 Port Authentication; Port Authentication Overview; What You Can Do - ZyXEL Communications GS1920 Series User Manual

Intelligent layer 2 gbe switch
Hide thumbs Also See for GS1920 Series:
Table of Contents

Advertisement

18.1 Port Authentication Overview

This chapter describes the IEEE 802.1x and MAC authentication methods.
Port authentication is a way to validate access to ports on the Switch to clients based on an external
server (authentication server). The Switch supports the following methods for port authentication:
• IEEE 802.1x
password provided by the user.
• MAC Authentication - An authentication server validates access to a port based on the MAC
address and password of the client.
Both types of authentication use the RADIUS (Remote Authentication Dial In User Service, RFC
2138, 2139) protocol to validate users. See
information on configuring your RADIUS server settings.
Note: If you enable IEEE 802.1x authentication and MAC authentication on the same
port, the Switch performs IEEE 802.1x authentication first. If a user fails to
authenticate via the IEEE 802.1x method, then access to the port is denied.

18.1.1 What You Can Do

• Use the Port Authentication screen
configuration screens where you can enable the port authentication methods.
• Use the 802.1x screen
• Use the MAC Authentication screen

18.1.2 What You Need to Know

IEEE 802.1x Authentication
The following figure illustrates how a client connecting to a IEEE 802.1x authentication enabled port
goes through a validation process. The Switch prompts the client for login information in the form of
a user name and password. When the client provides the login credentials, the Switch sends an
authentication request to a RADIUS server. The RADIUS server validates whether this client is
allowed access to the port.
2.
At the time of writing, IEEE 802.1x is not supported by all operating systems. See your operating system documentation.
If your operating system does not support 802.1x, then you may need to install 802.1x client software.
2
- An authentication server validates access to a port based on a username and
(Section 18.2 on page
(Section 18.3 on page
(Section 18.4 on page
GS1920 Series User's Guide
155
C
HAPTER

Port Authentication

RADIUS and TACACS+ on page 210
157) to display the links to the
157) to activate IEEE 802.1x security.
160) to activate MAC authentication.
1 8
for more

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents