Qtech QSW-3900-48-SFP-DC [208/245] Brief introduction of 802 x configuration

Qtech QSW-3900-48-SFP-DC [208/245] Brief introduction of 802 x configuration
QTECH Software Configuration Manual
16-207
Chapter 16 802.1X Configuration Command
16.1 Brief introduction of 802.1X configuration
IEEE 802.1X is the accessing management protocol standard based on interface accessing control passed in
June, 2001. Traditional LAN does not provide accessing authentication. User can acess the devices and resources in
LAN when connecting to the LAN, which is a security hidden trouble. For application of motional office and CPN,
device provider hopes to control and configure users connecting. There is also the need for accounting.
IEEE 802.1X is a network accessing control technology based on interface which is the accessing devices
authentication and control by physical accessing level of LAN devices. Physical accessing level here means the
interface of LAN Switch devices. When authentication, switch is the in-between (agency) of client and authentication
server. It obtains users identity from client of accessing switch and verifies the information through authentication
server. If the authentication passes, this user is allowed to access LAN resources or it will be refused.
System realizes IEEE 802.1X authentication. Use IEEE 802.1X authentication needs : RADIUS server
which system can access to make the authentication informayion to send to; IEEE 802.1X authentication client
software installed in accessing users device (such as PC).
16.2 802.1X Configuration
Configure system or interface related parameter before enabling 802.1X authentication and these
configurations will be saved after disabling 802.1X. And the parameter will be effective after re-enabling 802.1X.
802.1X configuration list is as following :
· Configure RADIUS and TACACS+ project
· Configure domain
· Configure 802.1X
16.2.1 AAA configuration mode
Finish necessary configuration of domain and RADIUS project of 802.1X authentication.
Use aaa command in global configuration mode to enter AAA configuration mode.
For example :
! Enter AAA configuration mode
QTECH(config)#aaa
QTECH(config-aaa)#
16.3 RADIUS and TACACS+ Server Configuration
There are three kinds of users :
Ø Super-administrator
Ø Administrator
Ø Normal user
The normal users can only be in the user's mode after logging in the switch so they can only check the basic
information about operation and statistics; administrator can enter each configuration mode to check and manage the
system; super-administrator can both manage the system and all kinds of users.
& Note :
Normal users cannot configure the switch and change their own password.

Содержание

Похожие устройства

Скачать