DES-3526 / DES-3526DC Fast Ethernet Layer 2 Switch
MAC-Based Network Access Control
RADIUS
Server
Ethernet Switch
...
802.1X
802.1X
802.1X
802.1X
802.1X
802.1X
802.1X
802.1X
802.1X
802.1X
802.1X
802.1X
Client
Client
Client
Client
Client
Client
Client
Client
Client
Client
Client
Client
Network access controlled port
Network access uncontrolled port
Figure 6- 72. Example of Typical MAC-Based Configuration
In order to successfully make use of 802.1x in a shared media LAN segment, it would be necessary to
create "virtual" Ports, one for each attached device that required access to the LAN. The Switch would
regard the single physical Port connecting it to the shared media segment as consisting of a number of
distinct virtual Ports, each virtual Port being independently controlled from the point of view of
EAPOL exchanges and authorization state. The Switch learns each attached device's individual MAC
address, and effectively creates a virtual Port that the attached device can then use to communicate
with the LAN via the Switch.
Configure Authenticator
To configure the 802.1X Authenticator Settings, click PAE Access Entity > Configure Authenti-
cator:
103