Network and Security Manager Administration Guide
Enabling 802.1X on Enforcement Point Ports in the UAC Manager
654
Select the check box to run an Update Device task after you make an update.
7.
Select OK.
8.
When working in the Infranet Controller cluster mode, you face the following restrictions
in conflict resolution:
If the Infranet Controller in cluster mode is modified from active/active to active/passive
or vice versa, you must delete the Infranet Controller from NSM and re-create it so that
the UAC Associations are created in the context of the new mode. This action is required
because in the active/passive mode, the Infranet Controller has a virtual IP address
that the EX Series switches use to configure the RADIUS server tag. But in case of
active/active, the RADIUS server tag contains the IP address of the individual cluster
member.
The "Resolve Configuration Conflicts" task is not supported if you modify the cluster
mode.
When an Infranet Controller is in cluster mode active/active, you can only use the
"Resolve Configuration Conflicts" task to view conflicts but not resolve them.
You can only view and resolve conflicts for new or modified entries. Entries requiring
deletion do not appear because the Resolve Configuration Conflicts operation cannot
identify these entries from the RADIUS client of the IC.
To enable 802.1X on ports on Enforcement Points (EP):
Select an EP on whose ports you wish to enable 802.1X.
1.
Select the Add button (+) below the Port Details tab.
2.
Select one or more ports from the list. You can also search for a port name.
3.
Select the optional Supplicant Mode attributes:
4.
—Only one host is authenticated by the port.
Single Secure
—Multiple hosts are individually authenticated.
Multiple
— Multiple hosts are authenticated using the first host's authentication.
Single
Select the optional Authentication attributes—Whether reauthentication is allowed
5.
and the action to be taken if authentication fails.
Select the check box to run an Update Device task, which pushes configuration changes
6.
on both the IC and EPs. The configuration status of the devices changes to Managed,
InSync. The 802.1X enabled ports appear under the EP.
Select the check box to run a Summarize Delta Config task that ensures the association
7.
between the EP and the ports in the application database. The configuration status
of these devices become Managed, NSM Changed.
Select OK.
8.
Copyright © 2010, Juniper Networks, Inc.
Need help?
Do you have a question about the NETWORK AND SECURITY MANAGER 2010.4 - ADMININISTRATION GUIDE REV1 and is the answer not in the manual?
Questions and answers