Cisco Systems 3560 Manual De Usuario

Descargar
Página de 1288
C H A P T E R
 
10-1
Catalyst 3560 Switch Software Configuration Guide
OL-8553-06
10
Configuring IEEE 802.1x Port-Based 
Authentication
IEEE 802.1x port-based authentication prevents unauthorized devices (clients) from gaining access to 
the network. 
The Catalyst 3560 switch command reference and the “RADIUS Commands” section in the Cisco IOS 
Security Command Reference, Release 12.2, have command syntax and usage information. 
  •
  •
  •
Understanding IEEE 802.1x Port-Based Authentication
The standard defines a client-server-based access control and authentication protocol that prevents 
clients from connecting to a LAN through publicly accessible ports unless they are authenticated. The 
authentication server authenticates each client connected to a switch port before making available any 
switch or LAN services. 
Until the client is authenticated, IEEE 802.1x access control allows only Extensible Authentication 
Protocol over LAN (EAPOL), Cisco Discovery Protocol (CDP), and Spanning Tree Protocol (STP) 
traffic through the port to which the client is connected. After authentication, normal traffic passes 
through the port.
  •
  •
  •
  •
  •
  •
  •
  •
  •
  •
  •