Configuring 802.1X; Figure 10.1 Configuring 802.1X Security - Samsung Ubigate iBG3026 Configuration Manual

Hide thumbs Also See for Ubigate iBG3026:
Table of Contents

Advertisement

CHAPTER 10. Layer-2 Switching

Configuring 802.1x

IEEE 802.1x restricts unauthenticated devices from connecting to the router,
typically in a VLAN/Bridge environment. Only authenticated traffic is
allowed through the Ubigate iBG3026.
In the configuration example, the RADIUS Server keeps the Client
information, validating the identity of the client and updating the router about
the client authentication status. The router is the physical path between the two
clients and the RADIUS server. The Ubigate iBG3026 relays information to
the Server and then back to each client.
To configure 802.1x authentication, enable authentication on ports Ethernet
1/1 and Ethernet 2/1, then specify the RADIUS Server IP address and port.
Certificate
Router# configure terminal
Router/configure# bridge 1 protocol mstp
Router/configure# vlan database
Router/configure/vlan/database# vlan 2 bridge 1
Router/configure/vlan/database# exit
Router/configure# dot1x system-auth-ctrl
Router/configure# interface ethernet 1/0
Router/configure/interface/ethernet(1/0)# switchport
Router/configure/interface/ethernet(1/0)# bridge-group 1
Router/configure/interface/ethernet(1/0)# switchport
access vlan 2
Router/configure/interface/ethernet(1/0)# dot1x port-control
auto
Router/configure/interface/ethernet(1/0)# exit
Router/configure# interface ethernet 1/1
Router/configure/interface/ethernet(1/1)# switchport
Router/configure/interface/ethernet(1/1)# bridge-group 1
80
eth1
Client
Server
eth0

Figure 10.1 Configuring 802.1x Security

192.126.12.1
iBG3026
eth2
RADIUS
Server
© SAMSUNG Electronics Co., Ltd.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents