Huawei Quidway S3700 Series Configuration Manual page 93

Hide thumbs Also See for Quidway S3700 Series:
Table of Contents

Advertisement

Quidway S3700 Series Ethernet Switches
Configuration Guide - Security
[Quidway-radius-rd1] radius-server authentication 192.168.2.30 1812
# Set the key and retransmission count of the RADIUS server.
[Quidway-radius-rd1] radius-server shared-key cipher hello
[Quidway-radius-rd1] radius-server retransmit 2
[Quidway-radius-rd1] quit
Step 2 Create an authentication scheme web1 and set the authentication method to RADIUS
authentication.
[Quidway] aaa
[Quidway-aaa] authentication-scheme web1
[Quidway-aaa-authen-1] authentication-mode radius
[Quidway-aaa-authen-1] quit
Step 3 Create a domain isp1 and bind the authentication scheme and RADIUS server template to the
domain.
[Quidway-aaa] domain isp1
[Quidway-aaa-domain-isp1] authentication-scheme web1
[Quidway-aaa-domain-isp1] radius-server rd1
Step 4 Configure the 802.1x authentication function.
# Enable 802.1x authentication globally and on GE 0/0/1.
[Quidway] dot1x enable
[Quidway] interface gigabitethernet 0/0/1
[Quidway-GigabitEthernet0/0/1] dot1x enable
# Set the maximum number of access users on GE 0/0/1.
[Quidway-GigabitEthernet0/0/1] dot1x max-user 100
# Configure MAC address bypass authentication.
[Quidway-GigabitEthernet0/0/1] dot1x mac-bypass
Step 5 Verify the configuration.
Run the display dot1x interface command on the Switch, and you can view the configuration
and statistics of 802.1x authentication.
<Quidway> display dot1x interface gigabitethernet 0/0/1
GigabitEthernet0/0/1 status: UP
bypass]
Port control type is Auto
Authentication method is MAC-based
Reauthentication is disabled
Maximum users: 100
Current users: 1
Authentication Success: 4
EAPOL Packets: TX
Sent
Received
----End
Configuration Files
#
Issue 01 (2011-07-15)
: 8
EAPOL Request/Identity Packets
EAPOL Request/Challenge Packets : 4
Multicast Trigger Packets
EAPOL Success Packets
EAPOL Failure Packets
EAPOL Start Packets
EAPOL LogOff Packets
EAPOL Response/Identity Packets : 4
EAPOL Response/Challenge Packets: 4
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
802.1x protocol is Enabled[mac-
Failure: 0
RX
: 16
: 4
: 0
: 4
: 0
: 4
: 3
2 NAC Configuration
80

Advertisement

Table of Contents
loading

Table of Contents