Interoperability Requirements - Extreme Networks 200 Series Installation And User Manual

Summit 200 series
Table of Contents

Advertisement

Managing the Switch
Table 21: VSA Definitions for Web-based Network Login
Attribute
VSA
Value
Extreme-Netlogin-VLAN 203
Extreme-Netlogin-URL
204
Extreme-Netlogin-URL-
205
Desc
Extreme-Netlogin-Only
206
Table 22: VSA Definitions for 802.1x Network Login
Attribute
VSA
Value
Extreme-Netlogin-VLAN 203

Interoperability Requirements

For network login to operate, the user (supplicant) software and the authentication server must support
common authentication methods. Not all combinations will provide the appropriate functionality.
Supplicant Side
On the client side, currently, the only platform that natively supports 802.1x is Windows XP, which
performs MD5 and TLS. Other 802.1x clients are available that support other operating systems and
support mixes of authentication methods.
A Windows XP 802.1x supplicant can be authenticated as a computer or as a user. Computer
authentication requires a certificate installed in the computer certificate store, and user authentication
requires a certificate installed in the individual user's certificate store.
By default, the XP machine performs computer authentication as soon as the computer is powered on,
or at link-up when no user is logged into the machine. User authentication is performed at link-up
when the user is logged in.
The XP machine can be configured to perform computer authentication at link-up even if user is logged
in.
74
Type
Sent-in
String
Access-Accept
String
Access-Accept
String
Access-Accept
Integer
Access-Accept
Type
Sent-in
String
Access-Accept
Description
Name of destination VLAN (must already exist
on switch) after successful authentication.
Destination web page after successful
authentication.
Text description of network login URL attribute.
Determines if user can authenticate via other
means, such as telnet, console, SSH, or Vista.
A value of "1" (enabled) indicates that the user
can only authenticate via network login. A
value of zero (disabled) indicates that the user
can also authenticate via other methods.
Description
Name of destination VLAN (must already exist
on switch) after successful authentication.
Summit 200 Series Switch Installation and User Guide

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Summit 200-24Summit 200-48

Table of Contents