Contents
xi
Cisco IE 3000 Switch Software Configuration Guide
OL-13018-03
Information About Secure Copy 11-44
CHAPTER
12 Configuring IEEE 802.1x Port-Based Authentication 12-1
Understanding IEEE 802.1x Port-Based Authentication 12-1
Device Roles 12-2
Authentication Process 12-3
Authentication Initiation and Message Exchange 12-5
Authentication Manager 12-7
Port-Based Authentication Methods 12-7
Per-User ACLs and Filter-Ids 12-8
Authentication Manager CLI Commands 12-8
Ports in Authorized and Unauthorized States 12-9
802.1x Host Mode 12-10
Multidomain Authentication 12-11
802.1x Multiple Authentication Mode 12-12
802.1x Accounting 12-12
802.1x Accounting Attribute-Value Pairs 12-13
802.1x Readiness Check 12-14
802.1x Authentication with VLAN Assignment 12-14
802.1x Authentication with Downloadable ACLs and Redirect URLs 12-15
Cisco Secure ACS and Attribute-Value Pairs for the Redirect URL 12-16
Cisco Secure ACS and Attribute-Value Pairs for Downloadable ACLs 12-16
802.1x Authentication with Guest VLAN 12-17
802.1x Authentication with Restricted VLAN 12-18
802.1x Authentication with Inaccessible Authentication Bypass 12-19
802.1x Authentication with Voice VLAN Ports 12-20
802.1x Authentication with Port Security 12-20
802.1x Authentication with Wake-on-LAN 12-21
802.1x Authentication with MAC Authentication Bypass 12-22
Network Admission Control Layer 2 802.1x Validation 12-23
Flexible Authentication Ordering 12-23
Open1x Authentication 12-24
802.1x Switch Supplicant with Network Edge Access Topology (NEAT) 12-24
Web Authentication 12-25
Web Authentication with Automatic MAC Check 12-26
Using IEEE 802.1x Authentication with ACLs and the RADIUS Filter-Id Attribute 12-26
Configuring 802.1x Authentication 12-26
Default 802.1x Authentication Configuration 12-27
802.1x Authentication Configuration Guidelines 12-28