The Work Mechanism Of 802.1X - Planet WGSW-52040 Configuration Manual

48-port 10/100/1000base-t + 4-port 100/1000x sfp managed switch
Hide thumbs Also See for WGSW-52040:
Table of Contents

Advertisement

access the LAN via the authentication server system, and deal with the
authenticated/unauthenticated state of the controlled port according to the result of the
authentication. The authenticated state means the user is allowed to access the network
resources, the unauthenticated state means only the EAPOL messages are allowed to
be received and sent while the user is forbidden to access network resources.
2. controlled/uncontrolled ports
The authenticator system provides ports to access the LAN for the supplicant systems. These
ports can be divided into two kinds of logical ports: controlled ports and uncontrolled ports.
The uncontrolled port is always in bi-directionally connected status, and mainly used to
transmit EAPOL protocol frames, to guarantee that the supplicant systems can always
send or receive authentication messages.
The controlled port is in connected status authenticated to transmit service messages.
When unauthenticated, no message from supplicant systems is allowed to be received.
The controlled and uncontrolled ports are two parts of one port, which means each frame
reaching this port is visible on both the controlled and uncontrolled ports.
3. Controlled direction
In unauthenticated status, controlled ports can be set as unidirectional controlled or
bi-directionally controlled.
When the port is bi-directionally controlled, the sending and receiving of all frames is
forbidden.
When the port is unidirectional controlled, no frames can be received from the supplicant
systems while sending frames to the supplicant systems is allowed.
Notes: At present, this kind of switch only supports unidirectional control.

42.1.2 The Work Mechanism of 802.1x

IEEE 802.1x authentication system uses EAP (Extensible Authentication Protocol) to
implement exchange of authentication information between the supplicant system,
authenticator system and authentication server system.
EAP messages adopt EAPOL encapsulation format between the PAE of the supplicant
Figure 42-2: the Work Mechanism of 802.1x
42-137

Advertisement

Table of Contents

Troubleshooting

loading

Table of Contents