Axis Communications 214 PTZ user manual Security, Authentication process, Radius

Page 31

AXIS 214 PTZ 31

Security - 802.1x

IEEE 802.1x is an IEEE standard for port-based Network Admission Control. It provides authentication to devices attached to a network port (wired or wireless), establishing a point-to-point connection, or, if authentication fails, preventing access on that port. 802.1x is based on EAP (Extensible Authentication Protocol).

In a 802.1x enabled network switch, clients equipped with the correct software can be authenticated and allowed or denied network access at the Ethernet level.

Clients and servers in an 802.1x network may need to authenticate each other by some means. In the Axis implementation this is done with the help of digital certificates provided by a Certification Authority. These are then validated by a third-party entity, such as a RADIUS server, examples of which are Free Radius and Microsoft Internet Authentication Service.

To perform the authentication, the RADIUS server uses various EAP methods/protocols, of which there are many. The one used in the Axis implementation is EAP-TLS (EAP-Transport Layer Security).

The AXIS network video device presents its certificate to the network switch, which in turn forwards this to the RADIUS server. The RADIUS server validates or rejects the certificate and responds to the switch, and sends its own certificate to the client for validation. The switch then allows or denies network access accordingly, on a preconfigured port.

The authentication process

 

 

Axis video device

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Certificate

3

Q: Certificate OK?

2

 

 

 

 

 

A: OK

 

 

 

 

Network

Q: Certificate OK?

A: OK

switch

 

4

 

 

1

 

 

 

Certificate

 

 

 

 

 

 

 

 

 

 

Authority (CA)

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

RADIUS

 

 

 

 

 

server

 

 

 

 

Certificate

 

 

 

 

 

 

 

 

 

Protected network

1.A CA server provides the required signed certificates.

2.The Axis video device requests access to the protected network at the network switch. The switch forwards the video device’s CA certificate to the RADIUS server, which then replies to the switch.

3.The switch forwards the RADIUS server’s CA certificate to the video device, which also replies to the switch.

4.The switch keeps track of all responses to the validation requests. If all certificates are validated, the Axis video device is allowed access to the protected network via a preconfigured port.

RADIUS

RADIUS (Remote Authentication Dial In User Service) is an AAA (Authentication, Authorization and Accounting) protocol for applications such as network access or IP mobility. It is intended to work in both local and roaming situations.

Image 31
Contents Axis 214 PTZ About this Document Table of contents Axis 214 PTZ Product Description Status PowerRear panel NetworkAccessing the camera from the Internet Accessing the cameraAccessing the camera from a browser Setting the password for rootPan/Tilt/Zoom controls Live ViewControl panel Viewer controlsPTZ Control Queue Motion Jpeg Video and Audio StreamsVideo Stream Types Audio Stream TypesRTP+RTSP How to stream MPEG-4MPEG-4 protocols and communication methods Axis Media ControlAudio transmission methods Other methods of accessing the video streamAccessing the Audio Streams Other MPEG-4 clientsAccessing the setup tools from a browser Setup ToolsImage Video & Image settingsImage Appearance Video Stream Overlay SettingsGo to Setup Video & Image Overlay Image Overlay ImageLow Light Behavior Advanced Camera SettingsImage Settings Lighting ConditionsAudio Channels Basic Audio SettingsEnable Audio AudioAudio Input Advanced Audio SettingsAudio Output Noise canceller threshold value Noise canceller attenuation Upload Own Web Files Live View ConfigUse custom settings LayoutOwn Home Default Video FormatDefault Viewer Viewer SettingsHtml Examples Sequence ModeExternal Video PTZ Configuration Terminology Event configurationEvent servers Click Add triggered on the Event types How to set up a triggered eventEvent types Triggered eventsMotion Detection How to set up a scheduled eventConfiguring Motion Detection Scheduled eventsMotion Detection Parameters Port StatusSecurity Https System OptionsSecurity Users Security IP Address FilterAxis 214 PTZ Security Authentication processRadius Date & Time Network Basic TCP/IP SettingsIP Address Configuration ServicesHttp Network Advanced TCP/IP SettingsRtsp HttpsNAT Traversal port mapping FTPNetwork Snmp Network QoS Quality of serviceNetwork Socks Network Smtp emailSupport MaintenanceNetwork Bonjour Ports & Devices I/O PortsUsing the Control Button Resetting to the factory default settingsAdvanced Inputs and outputs Schematic connection diagramConnecting audio equipment ConnectionsChecking the Firmware TroubleshootingUpdating the Firmware But not externally Symptoms, Possible Causes and Remedial ActionsAxis 214 PTZ cannot be accessed from a browser Video Image ProblemsBad snapshot images Audio problemsLens Technical SpecificationsProcessors and memory Installation, managementOptimizing your system General performance considerationsFrame rates MPEG-4 Frame rates Motion JpegBandwidth Etrax Ethernet Token Ring Axis Axis own microprocessor Glossary of TermsVOP See VOP See also IP Internet ProtocolMegapixel See Pixel URL Uniform Resource Locator An address on the network SSL/TSL Secure Socket Layer/Transport Layer Security TheseAxis 214 PTZ FTP Server Full duplex Half duplex Host Name Html Examples IndexHttp API Socks Pulse 8 Push to talk Referrals Restart Restore RTPSmtp Snapshot

214 PTZ specifications

The Axis Communications 214 PTZ is a sophisticated network camera designed for surveillance and security applications. This camera is equipped with advanced features that allow for flexible monitoring and exceptional image quality, making it a preferred choice for various environments including retail, transportation, and public spaces.

One of the standout features of the Axis 214 PTZ is its Pan-Tilt-Zoom capabilities. The camera can pan 360 degrees continuously and has a tilt range of 90 degrees, providing users with the ability to cover large areas. With its powerful zoom function, the camera can magnify subjects up to 36 times, making it easier to identify details from a distance. This is particularly useful for applications requiring detailed observation, such as monitoring entrances or tracking vehicles in a parking lot.

The 214 PTZ also boasts impressive image quality, supporting up to 4CIF resolution at full frame rate. It employs progressive scan technology and delivers clear images, even in challenging lighting conditions. This is further enhanced by features such as day/night functionality, which allows the camera to switch to infrared mode for low-light environments. The built-in wide dynamic range (WDR) capability helps to balance scenes with high contrast lighting, ensuring that both bright and dark areas are visible.

In terms of connectivity, the Axis 214 PTZ utilizes Power over Ethernet (PoE), simplifying installation and reducing cable clutter by allowing the camera to receive power and data through a single Ethernet cable. This enhances flexibility in camera placement as it eliminates the need for separate power supplies. Additionally, the camera supports various video compression formats, including H.264 and Motion JPEG, optimizing bandwidth usage while maintaining high-quality video streams.

Security is paramount in surveillance applications, and the Axis 214 PTZ is equipped with robust security features. It supports HTTPS encryption, ensuring that video feeds are secure from unauthorized access. The camera also includes tampering alarms and a secure access control system that can restrict user access based on specific permissions.

Lastly, the user-friendly interface and compatibility with various Axis Video Management Software solutions allow for seamless integration into existing security systems. The camera's robust construction ensures reliability in diverse weather conditions, making it an ideal choice for both indoor and outdoor applications. Overall, the Axis Communications 214 PTZ camera combines advanced surveillance technology with user-centric design to deliver a versatile and dependable security solution.