Configuring 802.1X
Configuration prerequisites
Configure an ISP domain and AAA scheme (local or RADIUS authentication) for 802.1X users.
•
If RADIUS authentication is used, create user accounts on the RADIUS server.
•
If local authentication is used, create local user accounts on the access device, and set the service
•
type to lan-access.
For more information about RADIUS client configuration, see
802.1X configuration task list
Task
Enabling 802.1X
Specifying an EAP message handling method
Setting the port authorization state
Specifying an access control method
Setting the maximum number of concurrent 802.1X users on a port
Setting the maximum number of authentication request
Setting the 802.1X timers
Configuring the online user handshake function
Enabling the proxy detection function
Enabling the multicast trigger function
Enabling the unicast trigger function
Specifying a mandatory authentication domain on a port
Enabling the quiet timer
Enabling the periodic online user re-authentication function
Configuring an 802.1X guest VLAN
Configuring an Auth-Fail VLAN
"Configuring
82
AAA."
Remarks
Required
Optional
Optional
Optional
Optional
Optional
Optional
Optional
Optional
Optional
Optional
Optional
Optional
Optional
Optional
Optional