Example port authentication configurations

TABLE 63 Output from the show auth-mac-addresses detailed command (Continued)

Field

Description

 

 

Authenticated

Whether the MAC address has been authenticated by the RADIUS server.

 

 

Time

The time at which the MAC address was authenticated. If the clock is set on the

 

Brocade device, then the actual date and time are displayed. If the clock has not

 

been set, then the time is displayed relative to when the device was last

 

restarted.

 

 

Age

The age of the MAC address entry in the authenticated MAC address list.

 

 

Dot1x

Indicated if 802.1X authentication is enabled or disabled for the MAC address

 

 

Example port authentication configurations

This section includes configuration examples of multi-device port authentication with dynamic VLAN assignment, and multi-device port authentication and 802.1X authentication.

Multi-device port authentication with dynamic

VLAN assignment

Figure 11 illustrates multi-device port authentication with dynamic VLAN assignment on a Brocade device. In this configuration, a PC and an IP phone are connected to a hub, which is connected to port e1 on a Brocade device. The profile for the PC MAC address on the RADIUS server specifies that the PC should be dynamically assigned to VLAN 102, and the RADIUS profile for the IP phone specifies that it should be dynamically assigned to VLAN 3.

260

Brocade ICX 6650 Security Configuration Guide

 

53-1002601-01

Page 280
Image 280
Brocade Communications Systems 6650 manual Example port authentication configurations