Dell Force10 S2410-01-10GE-24P Configuration Manual page 139

Sftos configuration guide
Hide thumbs Also See for Force10 S2410-01-10GE-24P:
Table of Contents

Advertisement

radiusList method associated with the 802.1x default login (for non-configured users for 802.1x port
security). 802.1x port-based access control is enabled for the system.
Interface 1/0/1 in force-authorized mode, because this is where the RADIUS server and protected
network resources are located
If a user, or supplicant, attempts to communicate through the switch on any interface except port 1/0/1, the
system challenges the supplicant for login credentials. The system encrypts the provided information and
transmits it to the RADIUS server. If the RADIUS server grants access, the system sets the 802.1x port
state of the interface to authorized and the supplicant is able to access network resources.
Figure 9-102. RADIUS Topology
Figure 9-103. Configuration Example for RADIUS
Force10 #config
Force10 (Config)#
Force10 (Config)#radius server host auth 10.10.10.10
Force10 (Config)#radius server key auth 10.10.10.10
Enter secret (16 characters max):******
Re-enter secret:******
Force10 (Config)#radius server host acct 10.10.10.10
Force10 (Config)#radius server key acct 10.10.10.10
Enter secret (16 characters max):******
Re-enter secret:******
Force10 (Config)#radius accounting mode
Force10 (Config)#authentication login radiusList radius
Force10 (Config)#dot1x defaultlogin radiusList
Force10 (Config)#dot1x system-auth-control
Force10 (Config)#interface 1/0/1
Force10 (Interface 1/0/1)#dot1x port-control force-authorized
Force10 (Interface 1/0/1)#exit
Force10 (Config)#exit
Figure 9-104
and
Figure 9-105
command
radius server key auth 10.10.10.10
for the RADIUS server at IP address 10.10.10.10 , while
request for "secret2" as the shared secret for the second RADIUS server. The
command sets the first RADIUS server as the primary authenticator, and the rest of the configuration is as
was done above.
show a setup with two RADIUS servers as authentication servers. The
invokes a request for "secret1" to be the shared secret word
authentication
accounting
radius server key auth 11.11.11.11
radius server primary
Providing User Access Security | 139
invokes a

Advertisement

Table of Contents
loading

This manual is also suitable for:

Force10

Table of Contents