xStack® DGS-3120 Series Layer 3 Managed Gigabit Ethernet Switch Web UI Reference Guide
324
can be set by management to any value in the range from 1 to 10.
TxPeriod (1-65535)
This sets the TxPeriod of time for the authenticator PAE state machine. This
value determines the period of an EAP Request/Identity packet transmitted to the
client. The default setting is 30 seconds.
ReAuthPeriod (1-65535)
A constant that defines a nonzero number of seconds between periodic re-
authentication of the client. The default setting is 3600 seconds.
ReAuthentication
Determines whether regular re-authentication will take place on this port. The
default setting is Disabled.
Port Control
Use the drop-down menu to select the port authorization state.
ForceAuthorized - Select to disable 802.1X and cause the port to transition to the
authorized state without any authentication exchange required. This means the
port transmits and receives normal traffic without 802.1X-based authentication of
the client.
Auto - Select to enable 802.1X and cause the port to begin in the unauthorized
state, which allows only EAPOL frames to be sent and received through the port.
The authentication process begins when the link state of the port transitions from
down to up, or when an EAPOL-start frame is received. The Switch then requests
the identity of the client and begins relaying authentication messages between
the client and the authentication server. This is the default.
ForceUnauthorized - Select to have the port to remain in the unauthorized state,
which ignores all attempts by the client to authenticate. The Switch cannot
provide authentication services to the client through the interface.
Capability
This allows the 802.1X Authenticator settings to be applied on a per-port basis.
Select Authenticator to apply the settings to the port. When the setting is
activated, a user must pass the authentication process to gain access to the
network. Select None disable 802.1X functions on the port.
Direction Sets the administrative-controlled direction to Both or In. If Both is selected,
control is exerted over both incoming and outgoing traffic through the controlled
port selected in the first field. If In is selected, the control is only exerted over
incoming traffic through the port the user selected in the first field.
Forward EAPOL PDU
This is a global setting to control the forwarding of EAPOL PDU. When 802.1X
functionality is disabled globally or for a port, and if 802.1X forward PDU is
enabled both globally and for the port, a received EAPOL packet on the port will
be flooded in the same VLAN to those ports for which 802.1X forward PDU is
enabled and 802.1X is disabled (globally or just for the port). The default state is
Max User (1-448)
Specify the maximum number of users. The maximum user limit is 448 users. The
default is 16. Tick the No Limit check box to have unlimited users.
Click the Refresh button to refresh the display table so that new entries will appear.
Click the Apply button to accept the changes made.
802.1X User Settings
Users can set different 802.1X users in switch’s local database.
To view this window, click Security > 802.1X > 802.1X User Settings as shown below:
Figure 8-11 802.1X User Settings window