Configuring Port Authentication; Vlan Configuration - Allied Telesis SwitchBlade x3100 Series Manual

Release 14.2 - issue 2
Table of Contents

Advertisement

Configuring Port Authentication

6.9.1.3 VLAN Configuration

Supplicant A
Supplicant B
6.9.2 Configuring Port Authentication
6.9.2.1 Default Configuration
When an SBx3112 switch is initially booted up, all of the ports have Port Authentication disabled.
6.9.2.2 Configuration Guidelines
Either the MGMT interface or the Inband interface can be used to access the RADIUS server.
More than one RADIUS server can be configured, and so the PRIORITY parameter is used (Refer to
RADIUS SERVER (SEC)
The SECRET parameter set with ADD RADIUS must match the one set on the RADIUS server.
For accounting to be configured, the accounting option must set on the RADIUS server as well as with the
SET DOT1X command.
Dynamic VLAN, Guest VLAN, and Authorization Fail VLAN are not supported in 14.2.
6.9.2.3 Feature Interaction
For the interfaces that will have the Port Authentication feature enabled, the user must first exclude from
STP those interfaces. (User must enter the DISABLE STP INTERFACE <interface-list>.)
Software Reference for SwitchBlade x3100 Series Switches (Access and Security)
SBx3100
Slot 6
22
301
201
23
Sample Port Authentication Configuration
FIGURE 6-3
.)
= Service VLAN (such as data traffic) - 301
= Inband MGMT VLAN - 4
Slot1
Subscriber Traffic
4
Introduction
192.168.10.254
(RADIUS Server)
ADD
6-99

Advertisement

Table of Contents
loading

Table of Contents