Quick Ead Deployment Configuration; Introduction To Quick Ead Deployment; Quick Ead Deployment Overview; Operation Of Quick Ead Deployment - H3C S3100 Series Operation Manual

H3c s3100 series ethernet switches operation manual
Hide thumbs Also See for S3100 Series:
Table of Contents

Advertisement

2

Quick EAD Deployment Configuration

The configuration introduced in this chapter is only supported by the S3100-EI series switches.

Introduction to Quick EAD Deployment

Quick EAD Deployment Overview

As an integrated solution, an Endpoint Admission Defense (EAD) solution can improve the overall
defense power of a network. In real applications, however, deploying EAD clients proves to be time
consuming and inconvenient.
To address the issue, the H3C S3100 series provides the forcible deployment of EAD clients with
802.1x authentication, easing the work of EAD client deployment.

Operation of Quick EAD Deployment

Quick EAD deployment is achieved with the two functions: restricted access and HTTP redirection.
Restricted access
Before passing 802.1x authentication, a user is restricted (through ACLs) to a specific range of IP
addresses or a specific server. Services like EAD client upgrading/download and dynamic address
assignment are available on the specific server.
HTTP redirection
In the HTTP redirection approach, when the terminal users that have not passed 802.1x authentication
access the Internet through Internet Explorer, they are redirected to a predefined URL for EAD client
download.
The two functions ensure that all the users without an EAD client have downloaded and installed one
from the specified server themselves before they can access the Internet, thus decreasing the
complexity and effort that EAD client deployment may involve.
The quick EAD deployment feature takes effect only when the access control mode of an
802.1x-enabled port is set to auto.
2-1

Advertisement

Chapters

Table of Contents
loading

Table of Contents