D-Link DES-1210-10/ME [79/129] Security smart binding dhcp snooping list

D-Link DES-1210-10/ME [79/129] Security smart binding dhcp snooping list
4 Configuration DES-1210 Metro Ethernet Managed Switch User Manual
73
Security > Smart Binding > DHCP Snooping List
The DHCP Snooping List page shows the DHCP Snooping list.
Figure 4.122 Security > Smart Binding > DHCP Snooping List
Security > 802.1X > 802.1X Settings
Network switches provide easy and open access to resources by simply attaching a client PC. Unfortunately
this automatic configuration also allows unauthorized personnel to easily intrude and possibly gain access to
sensitive data.
IEEE-802.1X provides a security standard for network access control, especially in Wi-Fi wireless networks.
802.1X holds a network port disconnected until authentication is completed. The switch uses Extensible
Authentication Protocol over LANs (EAPOL) to exchange authentication protocol client identity (such as a
user name) with the client, and forward it to another remote RADIUS authentication server to verify access
rights. The EAP packet from the RADIUS server also contains the authentication method to be used. The
client can reject the authentication method and request another, depending on the configuration of the client
software and the RADIUS server. Depending on the authenticated results, the port is either made available
to the user, or the user is denied access to the network.
The RADIUS servers make the network a lot easier to manage for the administrator by gathering and storing
the user lists.
Figure 4.123 - Security > 802.1X > 802.1X Settings
By default, 802.1X is disabled. To use EAP for security, select enabled and set the Authentication Mode
and Authentication Protocol then click Apply.
Authentication Mode: Indicates the 802.1X mode enabled on the device. The possible field values are:
Port Based Enables 802.1X on ports. This is the default value.
MAC Based Enables 802.1X on MAC addresses.
Authentication Protocol: Indicates the 802.1X Protocol on the device. The possible field values are Local
and RADIUS EAP.
From Port/To Port: Enter the port or ports to be set.
QuietPeriod (0 65535 sec): Sets the number of seconds that the switch remains in the quiet state
following a failed authentication exchange with the client. Default is 60 seconds.
ServerTimeout (1 65535 sec): Sets the amount of time the switch waits for a response from the client
before resending the response to the authentication server. Default is 30 seconds.

Содержание

Похожие устройства