HP 3600 v2 Series Security Configuration Manual page 80

Hide thumbs Also See for 3600 v2 Series:
Table of Contents

Advertisement

# Configure bbb as the default ISP domain for all users. Then, if a user enters a username without any ISP
domain at login, the authentication and accounting methods of the default domain will be used for the
user.
[Switch] domain default enable bbb
Configure 802.1X authentication
# Enable 802.1X globally.
[Switch] dot1x
# Enable 802.1X for port Ethernet 1/0/1.
[Switch] interface ethernet 1/0/1
[Switch-Ethernet1/0/1] dot1x
[Switch-Ethernet1/0/1] quit
# Configure the access control method. (Optional. The default setting meets the requirement.)
[Switch] dot1x port-method macbased interface ethernet 1/0/1
Verify the configuration
3.
NOTE:
If the 802.1X client of Windows XP is used, the properties of the 802.1X connection should be specifically
configured in the Authentication tab on the Properties page, where you must select the Enable IEEE
802.1X authentication for this network option and specify the EAP type as MD5-Challenge.
If the iNode client is used, no advanced authentication options need to be enabled.
When you use the iNode client, the user can pass authentication after entering username dot1x@bbb
and the correct password in the client property page. When you use the Windows XP 802.1X client, the
user can pass authentication after entering the correct username and password in the pop-up
authentication page. After the user passes authentication, the server assigns the port connecting the
client to VLAN 4.
Use the display connect command to view the connection information on the switch.
[Switch] display connection
Slot:
1
Index=22
, Username=dot1x@bbb
IP=192.168.1.58
IPv6=N/A
MAC=0015-e9a6-7cfe
Total 1 connection(s) matched on slot 1.
Total 1 connection(s) matched.
# View the information of the specified connection on the switch.
[Switch] display connection ucibindex 22
Slot:
1
Index=22
, Username=dot1x@bbb
IP=192.168.1.58
IPv6=N/A
MAC=0015-e9a6-7cfe
Access=8021X
,AuthMethod=CHAP
Port Type=Ethernet,Port Name=Ethernet1/0/1
Initial VLAN=2, Authorization VLAN=4
ACL Group=Disable
69

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

A3100-48 v2

Table of Contents