Chapter 2 Quick Ead Deployment Configuration; Introduction To Quick Ead Deployment; Quick Ead Deployment Overview; Operation Of Quick Ead Deployment - H3C S3100 8C SI Operation Manual

S3100 series ethernet switches
Table of Contents

Advertisement

Operation Manual – 802.1x-System Guard
H3C S3100 Series Ethernet Switches

Chapter 2 Quick EAD Deployment Configuration

Note:
The configuration introduced in this chapter is only supported by the S3100-EI series
switches.

2.1 Introduction to Quick EAD Deployment

2.1.1 Quick EAD Deployment Overview

As an integrated solution, an Endpoint Admission Defense (EAD) solution can improve
the overall defense power of a network. In real applications, however, deploying EAD
clients proves to be time consuming and inconvenient.
To address the issue, the H3C S3100 series provides the forcible deployment of EAD
clients with 802.1x authentication, easing the work of EAD client deployment.

2.1.2 Operation of Quick EAD Deployment

Quick EAD deployment is achieved with the two functions: restricted access and HTTP
redirection.
I. Restricted access
Before passing 802.1x authentication, a user is restricted (through ACLs) to a specific
range of IP addresses or a specific
upgrading/download and dynamic address assignment are available on the specific
server.
II. HTTP redirection
In the HTTP redirection approach, when the terminal users that have not passed
802.1x authentication access the Internet through Internet Explorer, they are redirected
to a predefined URL for EAD client download.
The two functions ensure that all the users without an EAD client have downloaded and
installed one from the specified server themselves before they can access the Internet,
thus decreasing the complexity and effort that EAD client deployment may involve.
Chapter 2 Quick EAD Deployment Configuration
server. Services like EAD client
2-1

Advertisement

Table of Contents
loading

This manual is also suitable for:

S3100-si seriesS3100-ei series

Table of Contents