D-Link DGS-3120-24TC Product Manual - Page 210

X User Settings, Security > 802.1X > 802.1X User Settings

Page 210 highlights

xStack® DGS-3120 Series Managed Switch Web UI Reference Guide TxPeriod ReAuthPeriod ReAuthentication Port Control This sets the TxPeriod of time for the authenticator PAE state machine. This value determines the period of an EAP Request/Identity packet transmitted to the client. The default setting is 30 seconds. A constant that defines a nonzero number of seconds between periodic reauthentication of the client. The default setting is 3600 seconds. Determines whether regular re-authentication will take place on this port. The default setting is Disabled. This allows the user to control the port authorization state. Select ForceAuthorized to disable 802.1X and cause the port to transition to the authorized state without any authentication exchange required. This means the port transmits and receives normal traffic without 802.1X-based authentication of the client. If ForceUnauthorized is selected, the port will remain in the unauthorized state, ignoring all attempts by the client to authenticate. The Switch cannot provide authentication services to the client through the interface. If Auto is selected, it will enable 802.1X and cause the port to begin in the unauthorized state, allowing only EAPOL frames to be sent and received through the port. The authentication process begins when the link state of the port transitions from down to up, or when an EAPOL-start frame is received. The Switch then requests the identity of the client and begins relaying authentication messages between the client and the authentication server. The default setting is Auto. Capability This allows the 802.1X Authenticator settings to be applied on a per-port basis. Select Authenticator to apply the settings to the port. When the setting is activated, a user must pass the authentication process to gain access to the network. Select None disable 802.1X functions on the port. Direction Sets the administrative-controlled direction to Both or In. If Both is selected, control is exerted over both incoming and outgoing traffic through the controlled port selected in the first field. If In is selected, the control is only exerted over incoming traffic through the port the user selected in the first field. Forward EAPOL PDU This is a global setting to control the forwarding of EAPOL PDU. When 802.1X functionality is disabled globally or for a port, and if 802.1X forward PDU is enabled both globally and for the port, a received EAPOL packet on the port will be flooded in the same VLAN to those ports for which 802.1X forward PDU is enabled and 802.1X is disabled (globally or just for the port). The default state is disabled. Max Users Specifies the maximum number of users. The maximum user limit is 448 users. The default is 16. Click the Refresh button to refresh the display table so that new entries will appear. Click the Apply button to accept the changes made. 802.1X User Settings Users can set different 802.1X users in switch's local database. To view this window, click Security > 802.1X > 802.1X User Settings as shown below: 202

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339

xStack® DGS-3120 Series Managed Switch Web UI Reference Guide
202
TxPeriod
This sets the TxPeriod of time for the authenticator PAE state machine. This value
determines the period of an EAP Request/Identity packet transmitted to the client. The
default setting is
30
seconds.
ReAuthPeriod
A constant that defines a nonzero number of seconds between periodic re-
authentication of the client. The default setting is
3600
seconds.
ReAuthentication
Determines whether regular re-authentication will take place on this port. The default
setting is
Disabled
.
Port Control
This allows the user to control the port authorization state.
Select
ForceAuthorized
to disable 802.1X and cause the port to transition to the
authorized state without any authentication exchange required. This means the port
transmits and receives normal traffic without 802.1X-based authentication of the client.
If
ForceUnauthorized
is selected, the port will remain in the unauthorized state, ignoring
all attempts by the client to authenticate. The Switch cannot provide authentication
services to the client through the interface.
If
Auto
is selected, it will enable 802.1X and cause the port to begin in the unauthorized
state, allowing only EAPOL frames to be sent and received through the port. The
authentication process begins when the link state of the port transitions from down to
up, or when an EAPOL-start frame is received. The Switch then requests the identity of
the client and begins relaying authentication messages between the client and the
authentication server.
The default setting is
Auto
.
Capability
This allows the 802.1X Authenticator settings to be applied on a per-port basis. Select
Authenticator
to apply the settings to the port. When the setting is activated, a user
must pass the authentication process to gain access to the network. Select
None
disable 802.1X functions on the port.
Direction
Sets the administrative-controlled direction to
Both
or
In.
If
Both
is selected, control is
exerted over both incoming and outgoing traffic through the controlled port selected in
the first field. If
In
is selected, the control is only exerted over incoming traffic through
the port the user selected in the first field.
Forward EAPOL
PDU
This is a global setting to control the forwarding of EAPOL PDU. When 802.1X
functionality is disabled globally or for a port, and if 802.1X forward PDU is enabled
both globally and for the port, a received EAPOL packet on the port will be flooded in
the same VLAN to those ports for which 802.1X forward PDU is enabled and 802.1X is
disabled (globally or just for the port). The default state is disabled.
Max Users
Specifies the maximum number of users. The maximum user limit is 448 users. The
default is 16.
Click the
Refresh
button to refresh the display table so that new entries will appear.
Click the
Apply
button to accept the changes made.
802.1X User Settings
Users can set different 802.1X users in switch’s local database.
To view this window, click
Security > 802.1X > 802.1X User Settings
as shown below: