EasyManuals Logo

Cisco 3750G - Catalyst Integrated Wireless LAN Controller User Manual

Cisco 3750G - Catalyst Integrated Wireless LAN Controller
1204 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #283 background imageLoading...
Page #283 background image
10-29
Catalyst 3750 Switch Software Configuration Guide
OL-8550-02
Chapter 10 Configuring IEEE 802.1x Port-Based Authentication
Configuring IEEE 802.1x Authentication
Configuring the Host Mode
Beginning in privileged EXEC mode, follow these steps to allow a single host (client) on an
IEEE 802.1x-authorized port. Use the multi-domain keyword to configure multidomain authentication
(MDA) to enable authentication of both a host and a voice device, such as an IP phone (Cisco or
non-Cisco) on the same switch port. This procedure is optional.
To disable multiple hosts on the port, use the no dot1x host-mode multi-host interface configuration
command.
This example shows how to enable IEEE 802.1x authentication and to allow multiple hosts:
Switch(config)# interface gigabitethernet2/0/1
Switch(config-if)# dot1x port-control auto
Switch(config-if)# dot1x host-mode multi-host
Switch(config-if)# end
This example shows how to enable MDA and to allow both a host and a voice device on the port:
Switch(config)# interface gigabitethernet3/0/1
Switch(config-if)# dot1x port-control auto
Switch(config-if)# dot1x host-mode multi-domain
Switch(config-if)# switchport voice vlan 101
Switch(config-if)# end
Command Purpose
Step 1
configure terminal Enter global configuration mode.
Step 2
radius-server vsa send authentication Configure the network access server to recognize and use vendor-specific
attributes (VSAs).
Step 3
interface interface-id Specify the port to which multiple hosts are indirectly attached, and enter
interface configuration mode.
Step 4
dot1x host-mode {single-host |
multi-host | multi-domain}
The keywords have these meanings:
single-host–Allow a single host (client) on an
IEEE 802.1x-authorized port.
multi-host–Allow multiple hosts on an IEEE 802.1x-authorized port
after a single host has been authenticated.
multi-domain–Allow both a host and a voice device, such as an IP
phone (Cisco or non-Cisco), to be authenticated on an
IEEE 802.1x-authorized port.
Note You must configure the voice VLAN for the IP phone when the
host mode is set to multi-domain. For more information, see
Chapter 15, “Configuring Voice VLAN.”
Make sure that the dot1x port-control interface configuration command
set is set to auto for the specified interface.
Step 5
switchport voice vlan vlan-id (Optional) Configure the voice VLAN.
Step 6
end Return to privileged EXEC mode.
Step 7
show dot1x interface interface-id Verify your entries.
Step 8
copy running-config startup-config (Optional) Save your entries in the configuration file.

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco 3750G - Catalyst Integrated Wireless LAN Controller and is the answer not in the manual?

Cisco 3750G - Catalyst Integrated Wireless LAN Controller Specifications

General IconGeneral
Switching Capacity32 Gbps
RAM128 MB
Flash Memory32 MB
Power DeviceInternal power supply
Ports48 x 10/100/1000 + 4 x SFP
Performance38.7 Mpps
Wireless LAN Controller Capacity50
StackingYes
FeaturesVLAN support, QoS
Compliant StandardsIEEE 802.3, IEEE 802.3u, IEEE 802.3ab, IEEE 802.3z
Operating Humidity10% to 85% non-condensing
Power over Ethernet (PoE)Yes (optional)

Related product manuals