Contents
viii
Catalyst 2950 Desktop Switch Software Configuration Guide
78-11380-03
Defining AAA Server Groups 6-31
Configuring RADIUS Authorization for Privileged EXEC Access and Network Services 6-33
Starting RADIUS Accounting 6-34
Configuring Settings for All RADIUS Servers 6-35
Configuring the Switch to Use Vendor-Specific RADIUS Attributes 6-35
Configuring the Switch for Vendor-Proprietary RADIUS Server Communication 6-36
Displaying the RADIUS Configuration 6-37
CHAPTER
7 Configuring 802.1X Port-Based Authentication 7-1
Understanding 802.1X Port-Based Authentication 7-1
Device Roles 7-2
Authentication Initiation and Message Exchange 7-3
Ports in Authorized and Unauthorized States 7-4
Supported Topologies 7-5
Configuring 802.1X Authentication 7-6
Default 802.1X Configuration 7-6
802.1X Configuration Guidelines 7-7
Enabling 802.1X Authentication 7-8
Configuring the Switch-to-RADIUS-Server Communication 7-9
Enabling Periodic Re-Authentication 7-10
Manually Re-Authenticating a Client Connected to a Port 7-11
Changing the Quiet Period 7-11
Changing the Switch-to-Client Retransmission Time 7-12
Setting the Switch-to-Client Frame-Retransmission Number 7-13
Enabling Multiple Hosts 7-13
Resetting the 802.1X Configuration to the Default Values 7-14
Displaying 802.1X Statistics and Status 7-14
CHAPTER
8 Configuring VLANs 8-1
Overview 8-1
Management VLANs 8-3
Changing the Management VLAN for a New Switch 8-3
Changing the Management VLAN Through a Telnet Connection 8-4
Assigning VLAN Port Membership Modes 8-4
VLAN Membership Combinations 8-6
Assigning Static-Access Ports to a VLAN 8-7
Using VTP 8-7
The VTP Domain 8-7
VTP Modes and Mode Transitions 8-7