EasyManuals Logo

ELTEX MES23xx User Manual

Default Icon
208 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #157 background imageLoading...
Page #157 background image
MES53xx, MES33xx, MES23xx Ethernet Switch Series 157
EapLengthErrorFramesRx
The number of EAPOL packets with an incorrect length received by the current
authenticator.
LastEapolFrameVersion
EAPOL version received in the last packet.
LastEapolFrameSource
Source MAC address received in the last packet.
11.1.2.2 Advanced authentication
With advanced dot1x settings, you can authenticate multiple clients connected to the port. There
are two authentication options: the first option is when the port-based authentication requires that a
single client be authenticated so that all clients will have access to the system (multiple hosts mode), and
the second option is when all clients connected to the port must be authenticated (multiple sessions
mode). If the port fails authentication in the multiple hosts mode, the access to network resources will be
denied for every connected hosts. Advanced settings also include administration of guest VLANs that can
be accessed by the users that are not authenticated.
The access port cannot be a member of an unauthenticated VLAN. The native VLAN of a
trunk port cannot be unauthenticated. However, for the port in General mode, the PVID
VLAN may be not authenticated (in this case only tagged packets can be received in an
unauthorized state).
Global configuration mode commands
Command line prompt in the global configuration mode is as follows:
console(config)#
Table 5.170. Global configuration mode commands
Command
Value/Default value
Action
dot1x guest-vlan timeout
timeout
timeout: (30..180)/
Specify the timeout between 802.1x authentication mode
activation (or port activation) and adding the port to a guest
VLAN.
no dot1x guest-vlan
timeout
Set the default value.
dot1x traps authentication
success
-/disabled
Enable ‘trap’ message transmission when the client
successfully passes MAC address authentication based on
802.1x standard.
no dot1x traps
authentication success
Set the default value.
dot1x traps authentication
failure
-/disabled
Enable trap’ message transmission when the client fails MAC
address authentication based on 802.1x standard.
no dot1x traps
authentication failure
Set the default value.
Ethernet interface configuration mode commands
Command line prompt in the Ethernet interface configuration mode is as follows:
console(config-if)#
Table 5.171. Ethernet interface configuration mode commands
Command
Value/Default value
Action
dot1x host-mode
-host |
multi-sessions}
-/ multi-host
Allow one or multiple clients to be present on an authorized
802.1X port.
- multi-host - multiple clients;
- single-host - single host;
- multi-sessions multiple sessions.

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the ELTEX MES23xx and is the answer not in the manual?

ELTEX MES23xx Specifications

General IconGeneral
BrandELTEX
ModelMES23xx
CategorySwitch
LanguageEnglish

Related product manuals