For 802.1X Or Mac Radius Authentication - Dell PowerConnect J-EX4200-24T Software Manual

J series; j-ex series
Table of Contents

Advertisement

Dell PowerConnect J-Series Ethernet Switch Complete Software Guide for Junos OS
Purpose
Action
Meaning
Related
Documentation
Example: Applying Firewall Filters to Multiple Supplicants on Interfaces Enabled for
802.1X or MAC RADIUS Authentication
2318
Verifying the VLAN Association With the Interface
Display the interface state and VLAN membership.
user@switch> show ethernet-switching interfaces
Ethernet-switching table: 0 entries, 0 learned
user@switch> show ethernet-switching interfaces
Interface
State
VLAN members
ge-0/0/0.0
down
default
ge-0/0/1.0
down
employee-vlan
ge-0/0/5.0
down
employee-vlan
ge-0/0/3.0
down
employee-vlan
ge-0/0/8.0
down
employee-vlan
ge-0/0/10.0 down
default
ge-0/0/11.0 down
employee-vlan
ge-0/0/23.0 down
default
ge-0/0/2.0
up
voice-vlan
data-vlan
The field
shows that the
VLAN members
VLAN and
voice-vlan
VLAN. The
Example: Setting Up VoIP with 802.1X and LLDP-MED on a J-EX Series Switch on
page 2302
Example: Configuring VoIP on a J-EX Series Switch Without Including 802.1X
Authentication on page 2309
Understanding 802.1X and VoIP on J-EX Series Switches on page 2263
Understanding 802.1X and LLDP and LLDP-MED on J-EX Series Switches on page 2261
On J-EX Series switches, firewall filters that you apply to interfaces enabled for 802.1X
or MAC RADIUS authentication are dynamically combined with the per-user policies sent
to the switch from the RADIUS server. The switch uses internal logic to dynamically
combine the interface firewall filter with the user policies from the RADIUS server and
create an individualized policy for each of the multiple users or nonresponsive hosts that
are authenticated on the interface.
This example describes how dynamic firewall filters are created for multiple supplicants
on an 802.1X-enabled interface (the same principles shown in this example apply to
interfaces enabled for MAC RADIUS authentication):
Requirements on page 2319
Overview and Topology on page 2319
Configuration on page 2321
Verification on page 2322
Blocking
unblocked
unblocked
unblocked
unblocked
unblocked
unblocked
unblocked
unblocked
unblocked
unblocked
interface supports both the
ge-0/0/2.0
State
field shows that the interface is up.
data-vlan

Advertisement

Table of Contents
loading

Table of Contents