Y1836bk0.book Page 1 Tuesday, July 15, 2003 12:55 PM Dell™ PowerConnect™ 5212 Systems Documentation Update w w w . d e l l . c o m | s u p p o r t . d e l l . c o m...
Page 3
Y1836bk0.book Page 1 Tuesday, July 15, 2003 12:55 PM Dell™ PowerConnect™ 5212 Systems Documentation Update w w w . d e l l . c o m | s u p p o r t . d e l l . c o m...
Page 4
Reproduction in any manner whatsoever without the written permission of Dell Computer Corporation is strictly forbidden. Trademarks used in this text: Dell, the DELL logo, and PowerConnect are trademarks of Dell Computer Corporation. Microsoft and Windows are registered trademarks of Microsoft Corporation.
Y1836bk0.book Page 5 Tuesday, July 15, 2003 12:55 PM This document provides information to update your Dell™ PowerConnect™ 5212 User’s Guide. The information in this document supersedes that in the User’s Guide. IEEE 802.1x Port Authentication The IEEE 802.1x standard defines a port-based access control procedure that prevents unauthorized access to a network by requiring users to first enter a user ID and password for authentication.
Y1836bk0.book Page 6 Tuesday, July 15, 2003 12:55 PM 802.1x Port Configuration Page The 802.1x protocol includes parameters that control the client authentication process that runs between the client and the switch (that is, authenticator), as well as the client identity lookup process that runs between the switch and authentication server.
Y1836bk0.book Page 7 Tuesday, July 15, 2003 12:55 PM To save any changes you make in this page, click Apply Changes. If you don’t want to save the changes, click Refresh. CLI Commands Table 1-1 summarizes the equivalent CLI commands for items on the 802.1x Port Configuration page.
Page 10
Y1836bk0.book Page 8 Tuesday, July 15, 2003 12:55 PM Table 1-1. 802.1x Port Configuration CLI Commands (continued) Command Usage Sets the maximum number of times the switch port dot1x max-req count will retransmit an EAP request packet to the client before it times out the authentication session.
Page 11
Y1836bk0.book Page 9 Tuesday, July 15, 2003 12:55 PM 802.1X Port Summary Port Name Status Mode Authorized disabled ForceAuthorized disabled ForceAuthorized disabled ForceAuthorized disabled ForceAuthorized ..........disabled ForceAuthorized disabled ForceAuthorized 802.1X Port Details 802.1X is enabled on port 1/1 reauth-enabled: Disable reauth-period: 3600 quiet-period:...
Y1836bk0.book Page 10 Tuesday, July 15, 2003 12:55 PM Backend State Machine State Idle Request Count Identifier(Server) Reauthentication State Machine State Initialize 802.1X is disabled on port 1/2 802.1X is disabled on port 1/3 802.1X is disabled on port 1/4 ..........
Page 13
Y1836bk0.book Page 11 Tuesday, July 15, 2003 12:55 PM • Rx Last EAPOLVer — The protocol version number carried in the most recently received EAPOL frame. • Rx Last EAPOLSrc — The source MAC address carried in the most recently received EAPOL frame.
Y1836bk0.book Page 12 Tuesday, July 15, 2003 12:55 PM CLI Commands Table 1-2 summarizes the equivalent CLI commands for items in the 802.1x Statistics page. Table 1-2. 802.1x Statistics CLI Commands Command Usage Use this command to show general port show dot1x authentication related settings on the switch or a [statistics]...
Y1836bk0.book Page 13 Tuesday, July 15, 2003 12:55 PM attributes. Standard RADIUS packets and attributes are defined in RFC 2865, RADIUS. When configuring the RADIUS server, certain attributes and values need to be specified to control the authorization of users on the switch. NOTE: The RADIUS server must be configured separately for each switch that needs to use its services.
Y1836bk0.book Page 14 Tuesday, July 15, 2003 12:55 PM RADIUS Configuration for 802.1x Port Authentication Each user that requires 802.1x authentication for network access must be configured locally on the RADIUS server or on an external database that the RADIUS server can access. Most RADIUS server software provides a facility to search external databases, such as other RADIUS or TACACS servers, SQL databases, or Windows domain servers.
Page 18
Y1836bk0.book Page 16 Tuesday, July 15, 2003 12:55 PM Printed in Taiwan. 0Y1836A00 w w w . d e l l . c o m | s u p p o r t . d e l l . c o m...