This solution is described as below:
Requirements of this solution:
1. The user supports 802.1X. That is, it is installed with the 802.1X client (Windows
XP carried, Star-supplicant or other IEEE802.1X-compliant client software).
2. The access layer device should be able to transparently transmit IEEE 802.1X.
frames (EAPOL)
3. The convergence layer device supports 802.1X (playing the role of the
authenticator)
4. One or multiple RADIUS-compliant servers are available as the authentication
server.
Key points for configuration of this solution:
1. The ports connected to the Radius Server and the uplink ports are configured as
uncontrolled ports, so that the device can normally communicate with the server
and the authorized users can access network resources through the uplink
interface.
2. The ports connected to the access layer devices must be set to the controlled
ports, to control the accessed users, and the users cannot access network
resources unless they first pass the authentication.