Edge-Core ECS4210-12P Web Management Manual page 274

12/28-port gigabit ethernet layer 2 switch
Hide thumbs Also See for ECS4210-12P:
Table of Contents

Advertisement

Chapter 12
| Security Measures
Network Access (MAC Address Authentication)
authentication (including Network Access and IEEE 802.1X). (Range: 1-1024;
Default: 1024)
Guest VLAN – Specifies the VLAN to be assigned to the port when 802.1X
Authentication fails. (Range: 0-4094, where 0 means disabled;
Default: Disabled)
The VLAN must already be created and active (see
on page
138). Also, when used with 802.1X authentication, intrusion action
must be set for "Guest VLAN" (see
802.1X" on page
326).
Dynamic VLAN – Enables dynamic VLAN assignment for an authenticated
port. When enabled, any VLAN identifiers returned by the RADIUS server
through the 802.1X authentication process are applied to the port, providing
the VLANs have already been created on the switch. (GVRP is not used to create
the VLANs.) (Default: Enabled)
The VLAN settings specified by the first authenticated MAC address are
implemented for a port. Other authenticated MAC addresses on the port must
have the same VLAN configuration, or they are treated as authentication
failures.
If dynamic VLAN assignment is enabled on a port and the RADIUS server
returns no VLAN configuration (to the 802.1X authentication process), the
authentication is still treated as a success, and the host is assigned to the
default untagged VLAN.
When the dynamic VLAN assignment status is changed on a port, all
authenticated addresses mapped to that port are cleared from the secure MAC
address table.
Dynamic QoS – Enables dynamic QoS assignment for an authenticated port.
(Default: Disabled)
MAC Filter ID – Allows a MAC Filter to be assigned to the port. MAC addresses
or MAC address ranges present in a selected MAC Filter are exempt from
authentication on the specified port (as described under
Address
Filter"). (Range: 1-64; Default: None)
Web Interface
To configure MAC authentication on switch ports:
1.
Click Security, Network Access.
2.
Select Configure Interface from the Step list.
3.
Click the General button.
4.
Make any configuration changes required to enable address authentication on
a port, set the maximum number of secure addresses supported, the guest
"Configuring Port Authenticator Settings for
– 274 –
"Configuring VLAN Groups"
"Configuring a MAC

Advertisement

Table of Contents
loading

This manual is also suitable for:

Ecs4210-12tEcs4210-28pEcs4210-28t

Table of Contents