13-51
Configuring Port-Based and User-Based Access Control (802.1X)
Configuring Switch Ports To Operate As Supplicants for 802.1X Connections to Other Switches
Configuring Switch Ports To Operate As
Supplicants for 802.1X Connections to
Other Switches
A switch port can operate as a supplicant in a connection to a port on another
802.1X-aware switch to provide security on links between 802.1X-aware
switches. (A port can operate as both an authenticator and a supplicant.)
Example
Suppose that you want to connect two switches, where:
■ Switch “A” has port 1 configured for 802.1X supplicant operation.
■ You want to connect port 1 on switch “A” to port 5 on switch “B”.
Figure 13-10.Example of Supplicant Operation
1. When port A1 on switch “A” is first connected to a port on switch “B”, or
if the ports are already connected and either switch reboots, port 1 begins
sending start packets to port 5 on switch “B”.
802.1X Authentication Commands page 13-17
802.1X Supplicant Commands
[no] aaa port-access < supplicant < [ethernet] < port-list > page 13-53
[auth-timeout | held-period | start-period | max-start | initialize |
identity | secret | clear-statistics]
page 13-53
802.1X-Related Show Commands page 13-55
RADIUS server configuration pages 13-25
RADIUS Server
Switch “A”
Port 1 Configured as an
802.1X Supplicant
Port 1
Switch “B”
Port B5
LAN Core