Netgear M4250-26G4XF-PoE User Manual - Page 63

Port authentication, Manage port authentication for individual ports

Page 63 highlights

AV Line of Fully Managed Switches M4250 Series Port authentication With port-based authentication, if 802.1X is enabled both globally and on the port, successful authentication of any one supplicant attached to the port results in all users being able to use the port without restrictions. At any time, only one supplicant is allowed to attempt authentication on a port in this mode. Ports in this mode are under bidirectional control. 802.1X is the default authentication mode. 802.1X is also referred to as dot1x. An 802.1X network includes three components: • Authenticator: The port that is authenticated before access to system services is permitted. • Supplicant: The host that is connected to the authenticated port requesting access to the system services. • Authentication server: The external server, for example, the RADIUS server that performs the authentication on behalf of the authenticator, and indicates whether the supplicant is authorized to access system services. For port authentication to function, you must configure at least one RADIUS server (see RADIUS servers on page 66). Manage port authentication for individual ports After you enable 802.1X port authentication globally, the default port authentication mode on the ports is Auto. However, before you enable 802.1X access authentication globally (see Manage 802.1X authentication on page 64), manually set the port authentication mode of the uplink port or ports to Authorized to enable the switch to keep its network connection and, if applicable, Internet connection. To assign a port authentication mode to individual ports: 1. Launch a web browser. 2. In the address field of your web browser, enter the IP address of the switch. The login page displays. 3. In the Login Name field, enter admin as the user name, in the Password field, enter your local device password, and click the AV UI Login button. Security 63 Audio Video User Manual

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100

Port authentication
With port-based authentication, if 802.1X is enabled both globally and on the port,
successful authentication of any one supplicant attached to the port results in all users
being able to use the port without restrictions. At any time, only one supplicant is allowed
to attempt authentication on a port in this mode. Ports in this mode are under
bidirectional control. 802.1X is the default authentication mode. 802.1X is also referred
to as dot1x.
An 802.1X network includes three components:
Authenticator
: The port that is authenticated before access to system services is
permitted.
Supplicant
: The host that is connected to the authenticated port requesting access
to the system services.
Authentication server
: The external server, for example, the RADIUS server that
performs the authentication on behalf of the authenticator, and indicates whether
the supplicant is authorized to access system services.
For port authentication to function, you must configure at least one RADIUS server (see
RADIUS
servers
on page 66).
Manage port authentication for individual
ports
After you enable 802.1X port authentication globally, the default port authentication
mode on the ports is Auto.
However, before you enable 802.1X access authentication globally (see Manage
802.1X
authentication
on page 64), manually set the port authentication mode of the uplink
port or ports to Authorized to enable the switch to keep its network connection and, if
applicable, Internet connection.
To assign a port authentication mode to individual ports:
1.
Launch a web browser.
2.
In the address field of your web browser, enter the IP address of the switch.
The login page displays.
3.
In the
Login Name
field, enter
admin
as the user name, in the
Password
field, enter
your local device password, and click the
AV UI Login
button.
Audio Video User Manual
63
Security
AV Line of Fully Managed Switches M4250 Series