Entering Basic 802.1X Settings; Authentication Settings; Selecting The Radius Authentication Method - Extreme Networks Sentriant AG Software User's Manual

Version 5.2
Hide thumbs Also See for Sentriant AG:
Table of Contents

Advertisement

Entering Basic 802.1X Settings

To enter basic 802.1X settings:
Home window>>System configuration>>Quarantining>>802.1X quarantine method radio button
1 In 802.1X enforcement mode, the Enforcement servers must be able monitor DHCP conversations
and detect endpoints by sniffing network traffic as it flows between the DHCP server and the
endpoints. Select an Endpoint detection location radio button as follows:
Remote—In more complex deployments, it is often impossible (in the case of multiple
Enforcement servers or multiple DHCP servers) or undesirable to span switch ports. In this case
the DHCP traffic monitoring and endpoint detection can be run remotely by installing and
configuring the endpoint activity capture software on each DHCP server involved in the 802.1X
deployment. In this case, choose the remote option.
Local—In simple configurations, it is possible to span, or mirror, the switch port into which the
DHCP server is connected. The eth1 interface of the Enforcement server is then plugged into the
spanned port and endpoint traffic is monitored on the eth1 interface. In this case, choose the local
option.
2 Enter one or more non-quarantined subnets, separated by commas in the Quarantine subnets text
field. All subnets should be entered using CIDR addresses.
3 Select a RADIUS server type by selecting one of the following radio buttons:
Local—Enables a local RADIUS server on the ES which can be configured to perform
authentication itself or proxy to another server.
Remote IAS—Disables the local RADIUS server so that an IAS server configured with the NAC
IAS plug-in to point to an ES can be used instead. When possible, a local RADIUS server that
proxies to the IAS server should be the preferred configuration.
4 Click ok.

Authentication Settings

Selecting the RADIUS Authentication method

To select the RADIUS authentication method:
Home window>>System configuration>>Quarantining>>802.1X quarantine method radio button
1 Select the Local radio button in the Basic 802.1X settings area.
2 Select an End-user authentication method:
Manual—RADIUS server authentication settings are configured manually from the command
line. See
"Enabling Sentriant AG for 802.1X" on page 284
Sentriant AG Software Users Guide, Version 5.2
System Configuration
for configuration information.
85

Advertisement

Table of Contents
loading

This manual is also suitable for:

Sentriant ag 5.2

Table of Contents