Configuring 802.1X Smarton - HP MSR Series Configuration Manual

Hpe flexnetwork msr router series
Hide thumbs Also See for MSR Series:
Table of Contents

Advertisement

Step
4.
(Optional.) Configure the
redirect URL.
5.
(Optional.) Set the EAD
rule timer.

Configuring 802.1X SmartOn

The SmartOn feature is mutually exclusive with the 802.1X online user handshake feature.
When the device sends a unicast EAP-Request/Notification packet to the client, it starts the SmartOn
client timeout timer (set by using the dot1x smarton timer supp-timeout command).
If the device does not receive any EAP-Response/Notification packets from the client within the
timeout timer, it retransmits the EAP-Request/Notification packet to the client. After the device
has made the maximum retransmission attempts but received no response, it stops the 802.1X
authentication process for the client.
If the device receives an EAP-Response/Notification packet within the timer or before the
maximum retransmission attempts have been made, it starts the SmartOn authentication. If the
SmartOn switch ID and the MD5 digest of the SmartOn password in the packet match those on
the device, 802.1X authentication continues for the client. Otherwise, the device denies the
client's 802.1X authentication request.
To configure 802.1X SmartOn:
Step
1.
Enter system view.
2.
Enter Layer 2 Ethernet
interface view.
3.
Enable the SmartOn feature
on the port.
4.
Return to system view.
5.
Configure the SmartOn
switch ID.
6.
Configure the SmartOn
password.
7.
(Optional.) Set the SmartOn
client timeout timer.
8.
(Optional.) Set the maximum
attempts for retransmitting
an EAP-Request/Notification
packet to a client.
Command
dot1x ead-assistant url
url-string
dot1x timer ead-timeout
ead-timeout-value
Command
system-view
interface interface-type
interface-number
dot1x smarton
quit
dot1x smarton switchid
switch-string
dot1x smarton password
{ cipher cipher-string | simple
plain-string }
dot1x smarton timer
supp-timeout
supp-timeout-value
dot1x smarton retry retries
105
Remarks
By default, no redirect URL is
configured.
Configure the redirect URL if users will
use Web browsers to access the
network.
The default setting is 30 minutes.
Remarks
N/A
N/A
By default, this feature is disabled.
N/A
By default, no SmartOn switch ID
is configured.
By default, no SmartOn password
is configured.
The default timer is 30 seconds.
By default, the device allows a
maximum of 3 attempts for
retransmitting an
EAP-Request/Notification packet
to a client.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents