On An Interface; On The Same Interface; Configuring Multi-Device Port Authentication; Enabling Multi-Device Port Authentication - Dell PowerConnect B-RX Configuration Manual

Bigiron rx series configuration guide v02.8.00
Hide thumbs Also See for PowerConnect B-RX:
Table of Contents

Advertisement

Support for authenticating multiple MAC addresses

on an interface

The multi-device port authentication feature allows multiple MAC addresses to be authenticated or
denied authentication on each interface. The maximum number of MAC addresses that can be
authenticated on each interface is 256. The default is 32.
Support for multi-device port authentication and 802.1x

on the same interface

On the BigIron RX, multi-device port authentication and 802.1x security can be enabled on the
same port. However, only one of them can authenticate a MAC address/802.1x client. If an 802.1x
client responds, the software assumes that the MAC should be authenticated using 802.1x
protocol mechanisms and multi-device port authentication for that MAC is aborted. Also, at any
given time, a port can have either 802.1x clients or multi-device port authentication clients but not
both.

Configuring multi-device port authentication

Configuring multi-device port authentication on the BigIron RX consists of the following tasks:

Enabling multi-device port authentication

You globally enable multi-device port authentication on the device.
To globally enable multi-device port authentication on the device, enter the following command.
BigIron RX(config)# mac-authentication enable
Syntax: [no] mac-authentication enable
Syntax: [no] mac-authentication enable <slot>/<portnum> | all
The all option enables the feature on all interfaces at once.
BigIron RX Series Configuration Guide
53-1002253-01
Enabling multi-device port authentication globally and on individual interfaces
Configuring an Authentication Method List for 802.1x
Setting RADIUS Parameters
Specifying the format of the MAC addresses sent to the RADIUS server (optional)
Specifying the authentication-failure action (optional)
Defining MAC address filters (optional)
Configuring dynamic VLAN assignment (optional)
Specifying to which VLAN a port is moved after its RADIUS-specified VLAN assignment expires
(optional)
Saving dynamic VLAN assignments to the running configuration file (optional)
Clearing authenticated MAC addresses (optional)
Disabling aging for authenticated MAC addresses (optional)
Specifying the aging time for blocked MAC addresses (optional)
Configuring multi-device port authentication
31
927

Advertisement

Table of Contents
loading

This manual is also suitable for:

Bigiron rx series

Table of Contents