Netis ST3326(ST-3302) [68/118] X config

68
connected to the port can access the network without being authenticated after one
supplicant system among them passes the authentication. And when the authenticated
supplicant system goes offline, the others are denied as well.
MAC address-based authentication. All supplicant systems connected to a port have to be
authenticated individually in order to access the network. And when a supplicant system
goes offline, the others are not affected.
The Mechanism of an 802.1x Authentication System
IEEE 802.1x authentication system uses the extensible authentication protocol (EAP) to exchange
information between supplicant systems and the authentication servers.
EAP protocol packets transmitted between the supplicant system PAE and the authenticator
system PAE are encapsulated as EAPoL packets.
EAP protocol packets transmitted between the authenticator system PAE and the RADIUS
server can either be encapsulated as EAP over RADIUS (EAPoR) packets or be terminated at
system PAEs. The system PAEs then communicate with RADIUS servers through password
authentication protocol (PAP) or challenge-handshake authentication protocol (CHAP)
packets.
When a supplicant system passes the authentication, the authentication server passes the
information about the supplicant system to the authenticator system. The authenticator
system in turn determines the state (authorized or unauthorized) of the controlled port
according to the instructions (accept or reject) received from the RADIUS server.
8.4 802.1x
8.4.1 802.1x Config

Содержание

Скачать