Configuring Dynamic Vlan Assignment With Port Authentication - Dell C9000 Series Networking Configuration Manual

Hide thumbs Also See for C9000 Series:
Table of Contents

Advertisement

Port Control:
Port Auth Status:
Re-Authentication:
Untagged VLAN id:
Tx Period:
Quiet Period:
ReAuth Max:
Supplicant Timeout:
Server Timeout:
Re-Auth Interval:
Max-EAP-Req:
Auth Type:
Auth PAE State:
Backend State:
Auth PAE State:
Backend State:
Configuring Dynamic VLAN Assignment
with Port Authentication
On the switch, 802.1X authentication supports dynamic VLAN assignment.
The basis for VLAN assignment is RADIUS attribute 81, Tunnel-Private-Group-ID. Dynamic VLAN assignment
uses the standard dot1x procedure:
1
The host sends a dot1x packet to the Dell Networking system
2
The system forwards a RADIUS REQEST packet containing the host MAC address and ingress port
number
3
The RADIUS server authenticates the request and returns a RADIUS ACCEPT message with the VLAN
assignment using Tunnel-Private-Group-ID
FORCE_AUTHORIZED
UNAUTHORIZED
Enable
None
90 seconds
120 seconds
10
30 seconds
30 seconds
7200 seconds
10
SINGLE_HOST
Initialize
Initialize
Initialize
Initialize
802.1X
112

Advertisement

Table of Contents
loading

Table of Contents