Example - GE Multilink ML810 Instruction Manual

Managed edge switch
Hide thumbs Also See for Multilink ML810:
Table of Contents

Advertisement

CONFIGURING 802.1X THROUGH THE COMMAND LINE INTERFACE
7.2.2

Example

Example 7-1: Setting port control parameters
802.1X Authenticator Configuration
==================================
Status: Disabled
RADIUS Authentication Server
==================================
IP Address:
0.0.0.0
UDP Port:
1812
Shared Secret:
ML810#
auth
ML810(auth)##
setport port=2 status=enable control=forceauth initialize=assert
Successfully set port control parameter(s)
ML810(auth)##
auth disable
802.1X Authenticator is disabled.
ML810(auth)##
authserver ip=3.204.240.1 secret=secret
Successfully set RADIUS Authentication Server parameter(s)
ML810(auth)##
auth enable
802.1X Authenticator is enabled.
ML810(auth)##
show auth ports
Port Status Control
======================================================
1
Enabled Auto
2
Enabled ForcedAuth Asserted
3
Enabled Auto
4
Enabled Auto
5
Enabled Auto
6
Enabled Auto
-- Port not available
ML810(auth)##
show auth config
802.1X Authenticator Configuration
==================================
Status: Enabled
RADIUS Authentication Server
==================================
IP Address:
3.204.240.1
UDP Port:
1812
Shared Secret:
secret
(continued on following page)
7–6
Example 7-1 demonstrates how to secure the network using port access. Ensure there is
no 802.1x or RADIUS server defined. Only one RADIUS server can be defined for the entire
network.
Initialize Current State
Deasserted Authorized
Unauthorized
Deasserted Authorized
Deasserted Unauthorized
Deasserted Unauthorized
Deasserted Unauthorized
CHAPTER 7: ACCESS USING RADIUS
The RADIUS server is on port 2. This port is
authenticated manually. If the RADIUS server is
several hops away, it may be necessary to
authenticate the interconnection ports. Make sure
the
setport port=2 status=enable
control=forceauth initialize=assert
is executed before the
The
auth disable
necessary. However, it is shown for
completeness in case a RADIUS
server was defined with a previously
set authentication scheme.
MULTILINK ML810 MANAGED EDGE SWITCH – INSTRUCTION MANUAL
command
command.
auth enable
command is not
The RADIUS server is
connected on port #2

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents