802.1X Authentication Configuration Tasks; Configure Authentication; Between The Switch And Cna Or Nic; Interface-Specific Administrative Tasks For 802.1X - Brocade Communications Systems Converged Enhanced Ethernet 8000 Administrator's Manual

Converged enhanced ethernet
Hide thumbs Also See for Converged Enhanced Ethernet 8000:
Table of Contents

Advertisement

12

802.1x authentication configuration tasks

802.1x authentication configuration tasks
The tasks in this section describe the common 802.1x operations that you will need to perform. For
a complete description of all the available 802.1x CLI commands for the Brocade FCoE hardware,
see the Converged Enhanced Ethernet Command Reference.

Configure authentication

between the switch and CNA or NIC

For complete information on the aaaConfig command, see the Fabric OS Command Reference and
the Fabric OS Administrator's Guide.
NOTE
The aaaConfig command attempts to connect to the first RADIUS server. If the RADIUS server is not
reachable, the next RADIUS server is contacted. However, if the RADIUS server is contacted and the
authentication fails, the authentication process does not check for the next server in the sequence.
To configure authentication, perform the following steps.
1. Connect to the switch and log in using an account assigned to the admin role.
2. Add the RADIUS to the switch as the authentication server. This Fabric OS CLI command moves
3. Enter global configuration mode.
4. Enable 802.1x authentication globally
5. Enter the copy command to save the running-config file to the startup-config file.

Interface-specific administrative tasks for 802.1x

It is essential to configure the 802.1x port authentication protocol globally on the Brocade FCoE
hardware, and then enable 802.1x and make customized changes for each interface port. Since
802.1x was enabled and configured in
administrative tasks in this section to make any necessary customizations to specific interface port
settings.

Configuring 802.1x on specific interface ports

To configure 802.1x port authentication on a specific interface port, perform the following steps
from privileged EXEC mode. Repeat this task for each interface port you wish to modify.
1. Enter the configure terminal command to access global configuration mode.
124
DRAFT: BROCADE CONFIDENTIAL
the new RADIUS server to the top of the access list.
switch:admin> aaaconfig --add 10.2.2.147 -conf radius 1
switch:admin>cmsh
switch#configure t
switch(config)#dot1x enable
switch(config)#do copy running-config startup-config
"802.1x authentication configuration
Converged Enhanced Ethernet Administrator's Guide
tasks", use the
53-1002163-02

Advertisement

Table of Contents
loading

Table of Contents