KTI Networks KGS-2404 manual

Page 71

While in the authentication process, the message packets, encapsulated by Extensible Authentication Protocol over LAN (EAPOL), are exchanged between an authenticator PAE and a supplicant PAE. The Authenticator exchanges the message to authentication server using EAP encapsulation. Before successfully authenticating, the supplicant can only touch the authenticator to perform authentication message exchange or access the network from the uncontrolled port.

Fig. 4-13

In the Fig. 4-14, this is the typical configuration, a single supplicant, an authenticator and an authentication server. B and C is in the internal network, D is Authentication server running RADIUS, switch at the central location acts Authenticator connecting to PC A and A is a PC outside the controlled port, running Supplicant PAE. In this case, PC A wants to access the services on device B and C, first, it must exchange the authentication message with the authenticator on the port it connected via EAPOL packet. The authenticator transfers the supplicant’s credentials to Authentication server for verification. If success, the authentication server will notice the authenticator the grant. PC A, then, is allowed to access B and C via the switch. If there are two switches directly connected together instead of single one, for the link connecting two switches, it may have to act two port roles at the end of the link: authenticator and supplicant, because the traffic is bi-directional.

D

Fig. 4-14

The Fig. 4-15 shows the procedure of 802.1x authentication. There are steps

65

Image 71
Contents KGS-2404 Page Release Table of Contents 100 Federal Communications Commission FCC Statement 06/28/2007 03/13/2007 02/10/2007About this user’s manual Vlan Overview of 24-Port GbE Web Smart SwitchKey Features in the Device Management ChecklistFeatures HardwarePage User Interfaces on the Front Panel Button, LEDs and Plugs View of 24-Port GbE Web Smart Switch10/100/1000Ethernet TP Port 1 to 24 LED LED IndicatorsUser Interfaces on the Rear Panel System LEDFront View of 1000Base-SX/LX LC, SFP Fiber Transceiver View of the Optional ModulesConnecting the SFP Module to the Chassis Starting 24-Port GbE Web Smart Switch UpHardware and Cable Installation Firmware Loading TP Port and Cable InstallationPower On Cabling RequirementsCabling Requirements for 1000SX/LX SFP Module Cabling Requirements for TP PortsTypical Network Topology in Deployment 1000Base-X TP, Fiber 100Base-TX TP 100Base-FX FiberNo Vlan Configuration Diagram Case 2b Port-based Vlan See -4 Page Management through Ethernet Port Managing 24-Port GbE Web Smart Switch through Ethernet PortIP Address Assignment Login Screen for Web110 10000000.00000001.00000010.1 Prefix Length No. of IP matched No. of Addressable IP Page 10 Network Connection between Remote Site and Central Site Typical Applications11 Peer-to-peer Network Connection What’s the Ethernet Basic Concept ManagementIEEE802.3 CSMA/CD MAC ARP SnapSTP Bpdu SAP Format Media Access Control MACFCS PRE SFDPage How does a MAC work? Bytes DTE Flow Control Page Bits How does a switch work? Collision Domain Page Page Virtual LAN Page Tag Format CFIPage Page VID Link Aggregation 10 Example of Link Aggregation Application Operation of Web-based Management Web Management Home Overview Information of Page Layout Snmp Lacp RstpFunction description System ConfigurationPage Page ON/OFF Port ConfigurationPort Configuration Vlan Mode ConfigurationSelect Vlan Mode VID Vlan Group ConfigurationAdd or Remove Vlan Member Page Aggregation 10 Aggregation/Trunking ConfigurationLacp 11 Lacp Port ConfigurationRstp Rstp Port Configuration Page Page Page Port Mode Port Control Authentication Port Status Radius IP 16 802.1X Configuration 802.1x Parameters Vlan ID Igmp Snooping20 Mirror ports configuration Mirror Configuration21 QoS Configuration QoSQuality of Service ConfigurationQoS Configuration Dscp Setting Dhcp Filter24 Filter Configuration Rate Limit 25 Rate Limit ConfigurationStorm Control 26 Storm Control ConfigurationPage Parameters description Snmp27 Snmp Configuration Statistics Overview Monitoring28 Statistics Overview for all ports Detailed Statistics Page 29 Detailed Statistics for each port 30 Lacp Status Lacp StatusRstp Status 31 Rstp Status Igmp Status 32 Igmp Status Ping Status33 Ping Maintenance 34 Warm Restart Warm RestartFactory Default 36 Software Upgrade Software UpgradeFunction description Configuration File TransferLogout Q&A Resolving No Link ConditionAppendix a Technical Specifications ƒ Cable and Maximum Length ƒ Network InterfaceSFP ƒ MAC Address and Self-learning 8K MAC addressDimensions ƒ Diagnostic LEDƒ Power Requirement Ambient TemperatureManagement Software Specifications OBJECT-TYPE PRIVATE-GESM-SW24L-MIB Definitions = Begin ImportsFrom RFC1213-MIB From RFC1155-SMI