H3C s3600 series Command Manual page 193

Hide thumbs Also See for s3600 series:
Table of Contents

Advertisement

Keyword
mac-and-userlogin-secure
mac-and-userlogin-secure
-ext
mac-authentication
mac-else-userlogin-secure
mac-else-userlogin-secure
-ext
secure
userlogin
userlogin-secure
Security mode
macAddressAndUs
erLoginSecure
macAddressAndUs
erLoginSecureExt
macAddressWithRa
dius
macAddressElseUs
erLoginSecure
macAddressElseUs
erLoginSecureExt
secure
userlogin
userLoginSecure
1-14
Description
In this mode, users trying to assess the
network through the port must first pass
MAC address authentication and then
802.1x authentication.
In this mode, only one user can access the
network through the port at a time.
This mode is similar to the
macAddressAndUserLoginSecure
mode, except that in this mode, more than
one user can access the network through
the port in this mode.
In this mode, MAC address authentication
is applied on users trying to access the
network.
In this mode, MAC address authentication
is first applied on users. If the authentication
succeeds, the users can access the
network successfully. If not, 802.1x
authentication is applied.
In this mode, only one 802.1x-authenticated
user can access the network through the
port. But at the same time, there can be
more than one MAC-address-authenticated
user on the port.
This mode is similar to the
macAddressElseUserLoginSecure
mode, except that in this mode, there can
be more than one 802.1x-authenticated
user on the port.
In this mode, MAC address learning is
disabled on the current port. Only packets
whose source MAC addresses are security
MAC addresses, already configured static
or dynamic MAC addresses can pass
through the port.
In this mode, 802.1x authentication is
applied on users trying to access the
network through the current port.
In this mode, MAC-based 802.1x
authentication is applied on users trying to
access the network through the port. The
port will be enabled when the authentication
succeeds and allow packets from
authenticated users to pass through.
In this mode, only one 802.1x-authenticated
user can access the network through the
port.
When the security mode of the port
changes from noRestriction to this mode,
the old dynamic MAC address entries and
authenticated MAC address entries kept on
the port are deleted automatically.

Hide quick links:

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the s3600 series and is the answer not in the manual?

Questions and answers

Table of Contents