Linksys SLM224G4S (G5), SLM248G4S (G5) manual Security Port Security, Setting Timer

Page 35

Chapter 5

Configuration Using the Web-based Utility

Enable Periodic Reauthentication  Select the checkbox to permit periodic port reauthentication.

Setting Timer  Click this button to open the Setting Timer screen to configure ports for 802.1x functionality.

Update  If you click this button, your changes are saved and appear immediately in the screen’s Table section.

Table

This part of the 802.1x Settings screen displays a summary of the settings that appear in the Parameters section of the screen. If you click More Details, the settings described in the “Setting Timer” section are added to the table.

Click Save Settings to apply the changes, or Cancel Changes to cancel the changes.

Setting Timer

The Setting Timer screen appears when you click Setting Timer on the 802.1x Settings screen. You use the Setting Timer screen to configure a port’s 802.1x functionality.

Security > 802.1x Settings > Setting Timer Port  Displays the port name.

Reauthentication Period  Specifies the number of seconds after which a connected client must be reauthenticated. The range is 300 to 4294967295 seconds. The default value is 3600 seconds.

Quiet Period  Specifies the time that a switch port waits after Max EAP Requests is exceeded before attempting to acquire a new client. The range is 1 to 65535 seconds. The default is 60 seconds.

Resending EAP  Specifies the time that the switch waits for a response to an EAP request/identity frame from the client before retransmitting an EAP packet. The range is 1 to 65535 seconds. The default is 30 seconds.

Max EAP Requests  Specifies the maximum number of times the switch port will retransmit an EAP request packet to the client before it times out the authentication session. The range is 1 to 10 times. The default is 2 retries.

SupplicantTimeout  Displays the number of seconds that lapses before EAP requests are resent to the supplicant.The range is 1 to 65535 seconds. The default is 30 seconds.

Server Timeout  The number of seconds that lapses before the switch resends a request to the authentication server The range is 1 to 65535. The default is 30 seconds.

Click Save to save your changes and leave the screen open. Click Save & Close to save your changes and close the screen. Click Close to close the screen without saving your changes.

Security > Port Security

The Port Security screen is used to configure a port’s security settings.

Security > Port Security

Network security can be increased by limiting access on a specific port only to users with specific MAC addresses. MAC addresses can be dynamically learned or statically configured.

Locked port security monitors both received and learned packets that are received on specific ports. Access to the locked port is limited to users with specific MAC addresses. These addresses are either manually defined on the port, or learned on that port up to the point when it is locked. When a packet is received on a locked port, and the packet’s source MAC address is not tied to that port (either it was learned on a different port, or it is unknown to the system), the protection mechanism is invoked, and can provide various options. Unauthorized packets arriving at a locked port are either:

Forwarded

Discarded

Cause the port to be shut down

Locked port security also enables storing a list of MAC addresses in the configuration file. The MAC address list can be restored after the device has been reset.

24/48-Port 10/100 + 4-Port Gigabit Resilient Clustering Smart Switch with 2 Combo SFPs

29

Image 35
Contents Port or 48-Port 10/100 + Online Resources About This GuideAbout This Guide Icon DescriptionsTable of Contents Snmp Gigabit Ethernet Fiber Optic Cabling Appendix B About Switch StackingAppendix C Glossary Appendix G Contact Information Appendix D SpecificationsAppendix E Warranty Information Appendix F Regulatory InformationIntroduction ChapterBack Panel Chapter Product OverviewProduct Overview Front PanelSLM248G4S Placement Options Chapter InstallationInstallation Pre-Installation ConsiderationsRack-Mount Placement Hardware InstallationDesktop Placement Configuring Stacking Mode Uplinking the SwitchConnect port G1 on Unit 3 to port G2 on Unit Replacing a Stacked SwitchConnect port G1 on Unit 2 to port G2 on Unit Login screen appears. Proceed to the Login section below Chapter Configuration Using Console InterfaceUsing the HyperTerminal Application Using telnetSystem Configuration Menu How to Use the Console InterfaceLogin Switch Main MenuSystem Information Management SettingsUser & Password Settings IP Configuration Security SettingsFile Management Network ConfigurationStack Configuration Restore System Default SettingsReboot System Help Port ConfigurationSystem Mode Port StatusDevice Information Chapter Configuration Using Web-based UtilitySetup Setup SummaryDNS Server The IP address of your ISP’s server that Setup ZoomSetup Network Settings Default Gateway The IP address default 0.0.0.0Daylight Saving Setup TimeIdentification Local TimeSntp Servers Setup Stack ManagementPort Management Port Settings Port ManagementPort Configuration Port Management Link Aggregation LAG ConfigurationPort Priority Lacp screen contains fields for configuring Lacp LAGsPort Management Lacp Global ParameterLacp Port Table Vlan Management Port SettingsVlan Management Vlan Management Create VlanJoin Vlan to Port Vlan Management Port to VlanVlan Management Vlan to Port Statistics Rmon Statistics StatisticsRmon History Table Statistics Rmon HistoryRmon History Log TableAdd Alarm Statistics Rmon AlarmsStatistics Interface Statistics Statistics Port UtilizationStatistics Rmon Events Ethernet-like Security 802.1x SettingsSecurity InterfaceSecurity Port Security Setting TimerWeb IP Filtering Security Management Access ListBroadcast Only Counts only Broadcast traffic Security Storm ControlSecurity Radius CoS Settings screen is used to enable or disable CoS QoS CoS SettingsCoS Settings CoS DefaultQoS Bandwidth QoS Queue SettingsQoS Dscp Settings Spanning Tree STP Status QoS Basic ModeSpanning Tree Spanning Tree Global STP Spanning Tree STP Port SettingsGlobal Setting Bridge SettingsIgmp Global Vlan Igmp SettingsMulticast Multicast Igmp SnoopingMulticast Bridge Multicast Forward All Multicast Bridge MulticastSnmp Views Snmp Global ParametersUser Name Provides a user-defined local user list Snmp Group ProfileSnmp Group Membership Snmp Communities Advanced Table Snmp Notification FilterSnmp Notification Recipient Base TableLocal User Edit AdminAdmin User Authentication User AuthenticationClear Table If selected, this clears the MAC Address table Admin Static AddressAdmin Dynamic Address Secure The entry is defined for locked portsQuery Admin Port MirroringAdmin Cable Test Admin Save Configuration Admin Factory Default Admin Firmware UpgradeAdmin Reboot Admin Memory Logs Admin LoggingAdmin Server Logs Logout Admin Flash LogsFiber Optic Cabling Appendix aAppendix a About Gigabit Ethernet Fiber Optic Cabling Gigabit EthernetStack Building Quick Start Appendix B About Switch StackingAbout Switch Stacking Appendix BUnit ID Allocation Advanced StackingStack Resiliency Unit IDsMaster Election Stack Units Startup ProcessMaster Discovery Replacing a Failed Stack Member in a Running Stack Unit and Port ConfigurationUser Controls Stacking ExamplesStack Master Failure and Replacement Splitting a Stack Subgroup Contains Both Master Unit and Backup Master UnitBoth Stacks Kept Running During Insertion Merging Two StacksInserting Too Many Units Stacking Cable FailureGlossary Appendix CAppendix C Glossary Glossary Mail protocol on the Internet Packet a unit of data sent over a networkAppendix C Appendix D Appendix D SpecificationsSpecifications 802.3z Gigabit Ethernet DimensionsUnit Weight SLM224G4S 1,927 kg 802.3 10BASE-T EthernetAppendix E Warranty InformationLimited Warranty Obtaining Warranty ServiceTechnical Support Warranty InformationRegulatory Information Appendix FRegulatory Information Appendix F Norsk Norwegian Miljøinformasjon for kunder i EU Appendix F Contact Information Appendix G8012510A-AI