Owner's Manual
245
RADIUS—The RADIUS servers does port authentication.
RADIUS, None—The RADIUS server first does port authentication. If the port is not
authenticated, then no authentication method is used, and the session is permitted.
Click
Remove
to delete a selected, listed item. You can
Add, Edit
or
Remove
port authentications
for the selected device in this screen. When you click
Add
(or select an existing authentication
listed in the
Port Authentication Details
portion of the screen and click
Edit
) the
Port Based
Authentication Editor
opens (the lower portion of the screen) with the following fields:
-
Interface
—Contains an interface list.
User Name
—The user name as configured in the RADIUS server.
-
Interface Control
—Defines the port authorization state. The possible field values include:
Authorized—Set the interface state to authorized (permit traffic).
Unauthorized—Set the interface state to unauthorized (deny traffic).
Auto—Authorize state is set by the authorization method.
-
MAB
—MAC authentication bypass. Check to enable.
-
Periodic Reauthentication Enabled
—Reauthenticates the selected port periodically, when
enabled. The reauthentication period is defined in the
Reauthentication Period (300-
4294967295)
field.
-
Reauthentication Period
(300-4294967295)—Indicate the period for the selected port to be
reauthenticated. The field value is in seconds. The field default is 3600 seconds.
-
Reauthenticate Now
—Permits immediate port reauthentication, when selected.
-
Authentication Server Timeout
(1-65535)—Defines the period that lapses before the device
resends a request to the authentication server. The field value is in seconds. The field default
is 30 seconds.
-
Resending EAP Identity Request
(1-65535)—Defines the period that lapses before EAP request
are resent. The field default is 30 seconds.
Quiet Period
(0-65535)—The number of seconds that the device remains in the quiet state
following a failed authentication exchange. The possible field range is 0-65535. The field default is
60 seconds.
-
Supplicant Timeout
(1-65535)—The amount of time that lapses before EAP requests are resent
to the user. The field value is in seconds. The field default is 30 seconds.
-
Max EAP Requests
(1-10)—The total amount of EAP requests sent. If a response is not received
after the defined period, the authentication process is restarted. The field default is 2 retries
-
Make Guest VLAN
—Select
Enable
or
Disable.
Port and Trunk Settings
Instead of duplicating most of the attributes below on another panel, you can place the port in or
out of a trunk in one operation.