Setting up the 802.1X Components
In order to use Sentriant AG in an 802.1X environment, Extreme Networks, Inc. recommends
configuring your environment first, then installing and configuring Sentriant AG.
This section provides instructions for the following:
"Setting up the RADIUS Server" on page 237
●
"Enabling Sentriant AG for 802.1X" on page 240
●
"Setting up the Supplicant" on page 241
●
"Setting up the Authenticator" on page 248
●
Setting up the RADIUS Server
Switches support 802.1X authentication by authenticating against a RADIUS server. The Sentriant AG
802.1X solution must be integrated with the RADIUS authentication to "intervene" in the authentication
process, test endpoints, and assign them to the appropriate VLAN. Sentriant AG can be deployed and
integrated with RADIUS in the following two ways:
Proxy requests from the built-in Sentriant AG RADIUS server to any other RADIUS server (see
●
"Proxying RADIUS Requests to an Existing RADIUS Server Using the Built-in Sentriant AG RADIUS
Server" on page
237).
Use the built-in Sentriant AG RADIUS server for authentication (see
●
802.1X" on page
240).
Any of these solutions can be customized to work with your existing LDAP or Active Directory user
databases. This section provides instructions for configuring these options.
Proxying RADIUS Requests to an Existing RADIUS Server Using the Built-in
Sentriant AG RADIUS Server
NOTE
For an explanation of how the components communicate, see
To configure Sentriant AG to proxy RADIUS requests to an existing RADIUS server:
1 To configure the RADIUS server to proxy requests to your existing RADIUS server:
a Log in to the ES as
b Open the following file with a text editor such as
/etc/raddb/proxy.conf
c Append the following section replacing the parameters in <> with your RADIUS servers
information:
realm NULL {
Sentriant AG Software Users Guide, Version 5.3
via SSH.
root
802.1X Quarantine Method
"Enabling Sentriant AG for
"Sentriant AG and 802.1X" on page
:
vi
234.
237
Need help?
Do you have a question about the Sentriant AG and is the answer not in the manual?