Global Configuration; Radius Server Configuration - ZyXEL Communications MES-2110 Support Notes

Managed 8-port 10/100 mbps plus 2-port gigabit dual personality access switch
Hide thumbs Also See for MES-2110:
Table of Contents

Advertisement

MANAGED 8-PORT 10/100 + 2 G DUAL PERSONALITY SWITCH
2.4
802.1x
IEEE 802.1x is a standard for port-based network access control, part of the IEEE 802
(802.1) group of protocols. It provides authentication to devices attached to a LAN port,
establishing a point-to-point connection or preventing access from that port if
authentication fails. It is often used for wireless access points, and is based on the EAP,
Extensible Authentication Protocol.

2.4.1 Global Configuration

This screen is for 802.1x global configuration. You have to enable the function in this
page first, and then go to Port Configuration (6.4.3) to enable the function on the port
basis.
To use the 802.1x authentication, you have to enable this function first in this screen.
Reauth-Max is used to determine the number of re-authentication attempts that are
permitted before the specific port becomes unauthorized (Default value is 2 times. This
means the Switch will ask for re-authentication for 2 more times, totaling 3 times of
inquires of authentication avaible.)
Guest VLAN is intended for deployment in conference rooms, building lobbies, and
other areas where visitors frequently require network access. It is deployed to provide
Internet access to users not equipped with an 802.1x supplicant on their machine and
hence not able to reply to the identity request messages received from the switch. The
ports that do not pass the authentication will be forced to be members of guest VLAN.
Members of guest VLAN can only access limited services.
To set a guest VLAN, a tag-based VLAN must be assigned first. Please refer to
VLAN menu for the configuration of tag-based VLAN. After a tag-based VLAN is
assigned, enable Guest VLAN in this page. This will enable the Guest VLAN function in
the Switch. After that, you still have to set per-port Guest VLAN in Port Configuration
(6.4.3).

2.4.2 Radius Server Configuration

Remote Authentication Dial In User Service (RADIUS) is a networking protocol that
provides centralized Authentication, Authorization and Accounting (AAA) management
for computers to connect and use a network service.
11
6.6

Advertisement

Table of Contents
loading

Table of Contents