Contents
xxvii
Catalyst 6500 Series Switch Software Configuration Guide—Release 8.7
OL-8978-04
Configuring Kerberos Authentication 39-33
Authentication Example 39-43
Understanding How Authorization Works 39-44
Authorization Overview 39-44
Authorization Events 39-45
TACACS+ Primary Options and Fallback Options 39-45
TACACS+ Command Authorization 39-45
RADIUS Authorization 39-46
Configuring Authorization on the Switch 39-46
TACACS+ Authorization Default Configuration 39-46
TACACS+ Authorization Configuration Guidelines 39-47
Configuring TACACS+ Authorization 39-47
Configuring RADIUS Authorization 39-50
Authorization Example 39-51
Understanding How Accounting Works 39-52
Accounting Overview 39-52
Accounting Events 39-52
Specifying When to Create Accounting Records 39-53
Specifying RADIUS Servers 39-53
Updating the Server 39-54
Suppressing Accounting 39-54
Configuring Accounting on the Switch 39-55
Accounting Default Configuration 39-55
Accounting Configuration Guidelines 39-55
Configuring Accounting 39-55
Accounting Example 39-58
CHAPTER
40 Configuring 802.1X Authentication 40-1
Understanding How 802.1X Authentication Works 40-2
Device Roles 40-2
Authentication Initiation and Message Exchange 40-3
Ports in Authorized and Unauthorized States 40-4
Authentication Server 40-6
802.1X Parameters Configurable on the Switch 40-6
Understanding How 802.1X VLAN Assignments Using a RADIUS Server Work 40-7
Understanding How 802.1X Authentication with DHCP Works 40-8
Understanding How 802.1X Authentication on Ports Configured for Auxiliary VLAN Traffic
Works
40-8
Understanding How 802.1X Authentication for the Guest VLAN Works 40-9