3Com 3CRWX120695A Installation And Basic Configuration Manual page 77

Wireless lan mobility system wireless lan switch and controller
Hide thumbs Also See for 3CRWX120695A:
Table of Contents

Advertisement

MSS checks the RADIUS server group or local database for matching
user information. If the MAC address (and password, if on a RADIUS
server) matches, MSS grants access. Otherwise, MSS attempts the
fallthru authentication type, which can be Web, last-resort, or none.
Web—A network user attempts to access a web page over the
network. The WX switch intercepts the HTTP or HTTPS request and
serves a login Web page to the user. The user enters the username
and password, and MSS checks the RADIUS server group or local
database for matching user information. If the username and
password match, MSS redirects the user to the web page she
requested. Otherwise, MSS denies access to the user.
Last-resort—A network user requests access to the network, without
entering a username or password. MSS checks for a last-resort
authentication rule for the requested SSID (or for wired, if the user is
on a wired authentication port). If a matching rule is found, MSS
checks the RADIUS server group or local database for username
last-resort-wired (for wired authentication access) or
last-resort-
ssid
user information is on a RADIUS server, MSS also checks for a
password.
Users cannot access the network unless they are authorized. You can
configure a WX switch to authenticate users with user information on a
group of RADIUS servers or in a local user database on the switch. You
also can configure a switch to offload some authentication tasks from the
server group.
Pass-through—The switch establishes an Extensible Authentication
Protocol (EAP) session directly between the client and RADIUS server.
All authentication information and certificate exchanges pass through
the switch. In this case, the switch does not need a certificate.
Local—The switch performs all authentication with information in a
local user database configured on the switch. No RADIUS servers are
required. In this case, the switch needs a certificate. If you plan to use
EAP with Transport Layer Security (EAP-TLS), the clients also need
certificates.
Offload—The switch offloads all EAP processing from a RADIUS server
by establishing a TLS session between the switch and the client. In this
case, the switch needs a certificate. If you plan to use the EAP-TLS
authentication protocol, the clients also need certificates.
Configuring User Authentication
, where ssid is the SSID requested by the user. If the
77

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the 3CRWX120695A and is the answer not in the manual?

This manual is also suitable for:

3crwx440095a

Table of Contents