Netgear GS516TP Software Administration Manual - Page 129

Max EAP Requests, Authenticator PAE State

Page 129 highlights

GS516TP Gigabit Smart Switches • MAC Based. Authentication is based on the MAC address. MAC authentication requires that a guest VLAN be configured on the switch, and that the port be enabled for guest VLAN. The guest VLAN is configured in the 802.1x Configuration page, and the guest VLAN is enabled on the port in the next field in this page. • Guest VLAN. Enable or disable the Guest VLAN on the interface. • Periodic Reauthentication. Enable or disable reauthentication of the supplicant for the specified port. The default value is Disable. Changing the selection does not change the configuration until you click the APPLY button. • Reauthentication Period. Enter the time span in which the selected port is reauthenticated. The valid range is 300-4294967295, and the default value is 3600 seconds. • Quiet Period. Enter the amount of time that the switch remains in the quiet state following a failed authentication exchange. The valid range is 0-65535, and the default value is 60 seconds. • Resending EAP. Enter the transmit period for the selected port. The transmit period is the value, in seconds, of the timer used by the authenticator state machine on the specified port to determine when to send an EAPOL EAP Request/Identify frame to the supplicant. The valid range is 30-65535, and the default value is 30 seconds. • Max EAP Requests. Enter the maximum number of requests for the selected port. This value is the maximum number of times the authenticator state machine on this port retransmits an EAPOL EAP Request/Identity before timing out the supplicant. The valid range is 1-10, and the default value is 2. • Supplicant Timeout. Enter the number of seconds that elapse before EAP requests are resent to the user. The valid range is 1-65535, and the default is 30 seconds. • Server Timeout. Enter the number of seconds that elapse before the switch resends a request to the authentication server. The valid range is 1-65535, and the default is 30 seconds. 4. For the selected ports, view the following settings, which are not configurable: • Control Direction. Displays the control direction for the specified port, which is always Both. The control direction dictates the degree to which protocol exchanges take place between supplicant and authenticator. The unauthorized controlled port exerts control over communication in both directions (disabling both incoming and outgoing frames). This field is not configurable. • Protocol Version. Displays the protocol version associated with the selected port. The only possible value is 1, corresponding to the first version of the 802.1x specification. • PAE Capabilities. Displays the port access entity (PAE) functionality of the selected port. Possible values are Authenticator or Supplicant. • Authenticator PAE State. This field displays the current state of the authenticator PAE state machine. Possible values are as follows: • Initialize • Disconnected 129

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208

129
GS516TP Gigabit Smart Switches
MAC Based
. Authentication is based on the MAC address. MAC authentication
requires that a guest VLAN be configured on the switch, and that the port be
enabled for guest VLAN. The guest VLAN is configured in the
802.1x
Configuration
page, and the guest VLAN is enabled on the port in the next field in
this page.
Guest VLAN
. Enable or disable the Guest VLAN on the interface.
Periodic Reauthentication
. Enable or disable reauthentication of the supplicant for
the specified port. The default value is Disable. Changing the selection does not
change the configuration until you click the APPLY button.
Reauthentication Period
. Enter the time span in which the selected port is
reauthenticated. The valid range is 300–4294967295, and the default value is 3600
seconds.
Quiet Period
. Enter the amount of time that the switch remains in the quiet state
following a failed authentication exchange. The valid range is 0–65535, and the
default value is 60 seconds.
Resending EAP
. Enter the transmit period for the selected port. The transmit period
is the value, in seconds, of the timer used by the authenticator state machine on the
specified port to determine when to send an EAPOL EAP Request/Identify frame to
the supplicant. The valid range is 30–65535, and the default value is 30 seconds.
Max EAP Requests
. Enter the maximum number of requests for the selected port.
This value is the maximum number of times the authenticator state machine on this
port retransmits an EAPOL EAP Request/Identity before timing out the supplicant.
The valid range is 1–10, and the default value is 2.
Supplicant Timeout
. Enter the number of seconds that elapse before EAP requests
are resent to the user. The valid range is 1–65535, and the default is 30 seconds.
Server Timeout
. Enter the number of seconds that elapse before the switch resends
a request to the authentication server. The valid range is 1–65535, and the default is
30 seconds.
4.
For the selected ports, view the following settings, which are not configurable:
Control Direction
. Displays the control direction for the specified port, which is
always Both. The control direction dictates the degree to which protocol exchanges
take place between supplicant and authenticator. The unauthorized controlled port
exerts control over communication in both directions (disabling both incoming and
outgoing frames). This field is not configurable.
Protocol Version
. Displays the protocol version associated with the selected port.
The only possible value is 1, corresponding to the first version of the 802.1x
specification.
PAE Capabilities
. Displays the port access entity (PAE) functionality of the selected
port. Possible values are Authenticator or Supplicant.
Authenticator PAE State
. This field displays the current state of the authenticator
PAE state machine. Possible values are as follows:
Initialize
Disconnected