Cisco WS-C4003 - Catalyst 4000 Chassis Switch Software Configuration Manual page 362

Software guide
Table of Contents

Advertisement

Understanding How Authentication Works
Table 27-2
Table 27-2 802.1x Terminology
Term
Authenticator PAE
Authentication server
Authorized state
Both
Controlled port
EAP
EAPOL
In
Port
2
PAE
PDU
RADIUS
Supplicant PAE
Unauthorized state
Uncontrolled port
1. EAPOL - Extensible authorization protocol over LAN
2. PAE - Port access entity
Software Configuration Guide—Catalyst 4000 Family, Catalyst 2948G, Catalyst 2980G, Releases 6.3 and 6.4
27-8
defines the terms used in 802.1x.
Definition
(Referred to as the "authenticator") entity at one end of a
point-to-point LAN segment that enforces supplicant authentication.
The authenticator is independent of the actual authentication method
and functions only as a pass-through for the authentication exchange.
It communicates with the supplicant, submits the information from
the supplicant to the authentication server, and authorizes the
supplicant when instructed to do so by the authentication server.
Entity that provides the authentication service for the authenticator
PAE. It checks the credentials of the supplicant PAE, and then notifies
its client, the authenticator PAE, whether the supplicant PAE is
authorized to access the LAN/switch services.
Status of the port after the supplicant PAE is authorized.
Bidirectional flow control, incoming and outgoing, at an
unauthorized switch port.
Secured access point.
Extensible authentication protocol.
1
Encapsulated EAP messages that can be handled directly by a LAN
MAC service.
Flow control only on incoming frames in an unauthorized switch port.
Single point of attachment to the LAN infrastructure (for example,
MAC Bridge ports).
Protocol object associated with a specific system port.
Protocol data unit.
Remote Access Dial In User Service.
(Referred to as the "supplicant") entity that requests access to the
LAN/switch services and responds to information requests from the
authenticator.
Status of the port before the supplicant PAE is authorized.
Unsecured access point that allows the uncontrolled exchange of
PDUs.
Chapter 27
Configuring Switch Access Using AAA
78-12647-02

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Catalyst 4000 seriesCatalyst 2948gCatalyst 2980g

Table of Contents