Dell PowerConnect J-EX4200-24T Software Manual page 2360

J series; j-ex series
Table of Contents

Advertisement

Dell PowerConnect J-Series Ethernet Switch Complete Software Guide for Junos OS
Table 292: Components of the MAC RADIUS Authentication Configuration Topology (continued)
Property
Connections to printers (no PoE required)
RADIUS server
Configuration
CLI Quick
Configuration
Step-by-Step
Procedure
Results
2288
Settings
ge-0/0/19
ge-0/0/20
Connected to the switch on interface
The printer with the MAC address 00040ffdacfe is connected to access interface
ge-0/0/19
. A second printer with the MAC address 0004aecd235f is connected to access
interface
. In this example, both interfaces are configured for MAC RADIUS
ge-0/0/20
authentication on the switch, and the MAC addresses (without colons) of both printers
are configured on the RADIUS server. Interface
normal delay while the switch attempts 802.1X authentication; MAC RADIUS
authentication is enabled and 802.1X authentication is disabled using the
option.
restrict
To configure MAC RADIUS authentication on the switch, perform these tasks:
To quickly configure MAC RADIUS authentication, copy the following commands and
paste them into the switch terminal window:
[edit]
set protocols dot1x authenticator interface ge-0/0/19 mac-radius
set protocols dot1x authenticator interface ge-0/0/20 mac-radius restrict
NOTE: You must also configure the two MAC addresses as usernames and
passwords on the RADIUS server, as is done in Step 2 of the step-by-step
procedure.
Configure MAC RADIUS authentication on the switch and on the RADIUS server:
On the switch, configure the interfaces to which the printers are attached for MAC
1.
RADIUS authentication, and configure interface
authentication is used:
[edit]
user@switch# set protocols dot1x authenticator interface ge-0/0/19 mac-radius
user@switch# set protocols dot1x authenticator interface ge-0/0/20 mac-radius restrict
On the RADIUS server, configure the MAC addresses
2.
as usernames and passwords:
0004aecd235f
[root@freeradius]#
edit /etc/raddb
vi users
00040ffdacfe Auth-type:=EAP, User-Password = "00040ffdacfe"
0004aecd235f Auth-type:=EAP, User-Password = "0004aecd235f"
Display the results of the configuration on the switch:
, MAC address 00040ffdacfe
, MAC address 0004aecd235f
ge-0/0/10
ge-0/0/20
ge-0/0/20
is configured to eliminate the
mac-radius
, so that only MAC RADIUS
00040ffdacfe
and

Advertisement

Table of Contents
loading

Table of Contents