310CHAPTER 8: CONFIGURING AUTHENTICATION, AUTHORIZATION, AND ACCOUNTING PARAMETERS

Viewing and

MAC network access rules allow users onto the network by

Configuring MAC

authenticating their MAC addresses instead of their user names.

Network Access

During log on, if the username does not match an 802.1X authentication

Rules

 

rule, but the MAC address of the user’s NIC or Voice-over-IP (VoIP) phone

 

and the SSID (if wireless) do match a MAC authentication rule, MSS

 

checks the RADIUS server group or local database for matching user

 

information. If the MAC address (and password, if on a RADIUS server)

 

matches, MSS grants access. Otherwise, MSS attempts the fallthru

 

authentication type, which can be Web, Open Access (last-resort), or

 

none.

 

This section assumes that you are familiar with the AAA options in MSS.

 

For detailed information, see the “Configuring AAA for Network Users”

 

chapter of the Wireless LAN Switch and Controller Configuration Guide.

Viewing MAC To view MAC network access rules:

Network Access Rules

1Select the Configuration tool bar option.

2In the Organizer panel, click the plus sign next to the WX switch.

3Click the plus sign next to AAA.

4Select MAC Access Rules.

The configured MAC network access rules appear.

Creating a MAC To create a MAC network access rule:

Network Access Rule

1Access the Create MAC Network Access wizard: a Select the Configuration tool bar option.

b In the Organizer panel, click the plus sign next to the WX switch. c Click the plus sign next to AAA.

d Select MAC Access Rules.

e In the Task List panel, select MAC Network Access.

Page 310
Image 310
3Com 3CRWX120695A WXR100, 3CRWXR10095A manual Configuring MAC, Network Access Rule, Select MAC Access Rules