Dell PowerConnect J-EX4200-24T Software Manual page 2391

J series; j-ex series
Table of Contents

Advertisement

Requirements
Overview and Topology
This example uses the following hardware and software components:
One J-EX Series switch
One RADIUS authentication server. The authentication server acts as the backend
database and contains credential information for hosts (supplicants) that have
permission to connect to the network.
Before you apply firewall filters to an interface for use with multiple supplicants, be sure
you have:
Set up a connection between the switch and the RADIUS server. See "Example:
Connecting a RADIUS Server for 802.1X to a J-EX Series Switch" on page 2267.
Configured 802.1X authentication on the switch, with the authentication mode for
interface
ge-0/0/2
set to
Procedure)" on page 2331 and "Example: Setting Up 802.1X for Single Supplicant or
Multiple Supplicant Configurations on a J-EX Series Switch" on page 2290.
Configured users on the RADIUS authentication server.
When the 802.1X configuration on an interface is set to multiple supplicant mode, the
system dynamically combines interface firewall filter with the user policies sent to the
switch from the RADIUS server during authentication and creates separate terms for
each user. Because there are separate terms for each user authenticated on the interface,
you can, as shown in this example, use counters to view the activities of individual users
that are authenticated on the same interface.
When a new user (or an nonresponsive host) is authenticated on an interface, the system
adds a term to the firewall filter associated with the interface, and the term (policy) for
each user is associated with the MAC address of the user. The term for each user is based
on the user-specific filters set on the RADIUS server and the filters configured on the
interface. For example, as shown in Figure 57 on page 2320, when User1 is authenticated
by the J-EX Series switch, the system creates the firewall filter
When User2 is authenticated, another term is added to the firewall filter, and so on.
Chapter 82: Examples: Access Control Configuration
multiple
. See "Configuring 802.1X Interface Settings (CLI
.
dynamic-filter-example
2319

Advertisement

Table of Contents
loading

Table of Contents