HP BladeSystem bc2200 Embedded Web System User Guide for the HP BladeSystem PC - Page 49

Defining Port Authentication Properties

Page 49 highlights

Configuring Device Security Advanced port-based authentication is implemented in the following modes: ■ Single Host Mode - Allows port access only to the authorized host. ■ Multiple Host Mode - Multiple hosts can be attached to a single port. Only one host must be authorized for all hosts to access the network. If the host authentication fails, or an EAPOL-logoff message is received, all attached clients are denied access to the network. ■ Guest VLANs - Provides limited network access to authorized ports. If a port is denied network access with port-based authorization, but the Guest VLAN is enabled, the port receives limited network access. For example, a network administrator can use Guest VLANs to deny network access with port-based authentication, but grant Internet access to unauthorized users. ■ Unauthenticated VLANs - Unauthenticated VLANS are available to users, even if the ports attached to the VLAN are defined as unauthorized. Defining Port Authentication Properties The 802.1x Properties page allows network managers to configure network authentication parameters. In addition, Guest VLANs are enabled from the 802.1x Properties page. To define the network authentication properties: 1. Click Network Security > 802.1x > Properties. The 802.1x Properties page opens: 802.1x Properties The 802.1x Properties page contains the following fields: ❏ Port Based Authentication State - Indicates if Port Authentication is enabled on the device. The possible field values are: ◆ Enable - Enables port-based authentication on the device. ◆ Disable - Disables port-based authentication on the device. ❏ Authentication Method - Specifies the authentication method used for port authentication. The possible field values are: ◆ None - Indicates that no authentication method is used to authenticate the port. Embedded Web System User Guide www.hp.com 4-23

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216

Embedded Web System User Guide
www.hp.com
4-23
Configuring Device Security
Advanced port-based authentication is implemented in the following modes:
Single Host Mode
— Allows port access only to the authorized host.
Multiple Host Mode
— Multiple hosts can be attached to a single port. Only one host must
be authorized for all hosts to access the network. If the host authentication fails, or an
EAPOL-logoff message is received, all attached clients are denied access to the network.
Guest VLANs
— Provides limited network access to authorized ports. If a port is denied
network access with port-based authorization, but the Guest VLAN is enabled, the port
receives limited network access. For example, a network administrator can use Guest
VLANs to deny network access with port-based authentication, but grant Internet access to
unauthorized users.
Unauthenticated VLANs
— Unauthenticated VLANS are available to users, even if the
ports attached to the VLAN are defined as unauthorized.
Defining Port Authentication Properties
The 802.1x Properties page allows network managers to configure network authentication
parameters. In addition, Guest VLANs are enabled from the 802.1x Properties page.
To define the network authentication properties:
1. Click
Network Security > 802.1x > Properties
. The 802.1x Properties page opens:
802.1x Properties
The 802.1x Properties page
contains the following fields:
Port Based Authentication State
— Indicates if Port Authentication is enabled on the
device. The possible field values are:
Enable
— Enables port-based authentication on the device.
Disable
— Disables port-based authentication on the device.
Authentication Method
— Specifies the authentication method used for port
authentication. The possible field values are:
None
— Indicates that no authentication method is used to authenticate the port.