RackSwitch G8000 Application Guide
802.1X authentication process
The clients and authenticators communicate using Extensible Authentication Protocol (EAP), which was originally designed to run over PPP, and for which the IEEE 802.1X Standard has defined an encapsulation method over Ethernet frames, called EAP over LAN (EAPOL).
Figure 2-1 shows a typical message exchange initiated by the client.
802.1X Client |
| RADIUS | ||||||
|
| Server | ||||||
|
|
| EAPOL | G8000 |
|
| ||
|
|
| ||||||
|
|
|
| (Authenticator) |
|
|
|
|
|
|
|
|
|
|
|
| |
|
|
| Ethernet | (RADIUS Client) | UDP/IP |
|
| |
|
| |||||||
|
|
|
|
|
|
|
|
|
Port Unauthorized
Port Authorized
Figure 2-1 Authenticating a Port Using EAPoL
BMD00041, November 2008 | Chapter 2: |