Zyxel OLT2412 [134/326] Port authentication configuration

Zyxel OLT2412 [134/326] Port authentication configuration
Chapter 18 Port Authentication
OLT2412 User’s Guide
134
18.2 Port Authentication Configuration
The setting descriptions are listed below.
Max-req: Specify the number of times the OLT tries to authenticate client(s) before sending
unresponsive ports to the Guest VLAN.
Reauth: Specify if a subscriber has to periodically re-enter his or her username and password to
stay connected to the port.
Reauth-period: Specify the length of time required to pass before a client has to re-enter his or
her username and password to stay connected to the port.
Quiet-period: Specify the number of seconds the port remains in the HELD state and rejects
further authentication requests from the connected client after a failed authentication exchange.
Tx-period: Specify the number of seconds the OLT waits for client's response before re-sending an
identity request to the client.
Supp-timeout: Specify the number of seconds the OLT waits for client's response to a challenge
request before sending another request.
Guest-vlan: A guest VLAN is a pre-configured VLAN on the OLT that allows non-authenticated
users to access limited network resources through the OLT. You must also enable IEEE 802.1x
authentication on the OLT and the associated ports. Enter the number that identifies the guest
VLAN.
Host-mode: Specify how the OLT authenticates users when more than one user connect to the
port (using a hub).
Multi-secure number: If you set Host-mode to Multi-Secure, specify the maximum number of
users (between 1 and 24) that the OLT will authenticate on this port.
The following table lists the IEEE 802.1X port authentication commands.
Table 70 Port Authentication Commands
COMMAND DESCRIPTION
port-access-authenticator
Enables 802.1x authentication on the OLT.
port-access-authenticator <aid>
Enables 802.1x authentication on the specified port(s).
aid: slot-<geslot> | <ge|pon>-<slot>-<port>
A “geslot” is a chassis slot with a GPON or GE line card
installed.
port-access-authenticator <aid>
max-req <1-10>
Sets the number of times the OLT tries to authenticate client(s)
before sending unresponsive ports to the guest VLAN.
port-access-authenticator <aid>
quiet-period <0-65535>
Sets the number of seconds the port(s) remains in the HELD
state and rejects further authentication requests from the
client after a failed authentication exchange.
port-access-authenticator <aid>
reauth-period <1-65535>
Specifies how often (in seconds) a client has to re-enter the
username and password to stay connected to the specified
port(s).
port-access-authenticator <aid>
reauthenticate
Sets a subscriber to periodically re-enter his or her username
and password to stay connected to a specified port.

Содержание