In the WebUI
To configuret heStat eful802.1x A uthentication profilevi a the WebUI:
1. Navigate to the Configuration > Security > Authentication > L2 A uthentication window.
2. In the Profiles list, select Stateful 802.1x Authentication Prof ile.
3. Click the Default Role drop-down list, and select the role assigned to stateful 802.1x authenticated users.
4. Specify thet imeout periodfor authentication requests, from 1-20 seconds. Thedefault value is 10 seconds.
5. Select theMode checkbox to enablest ateful8 02.1x authentication.
In the CLI
Use the followingco mmandsto c onfigurestateful 802.1x authentication via t heco mmand-lineinterface. The first
set of commands definest heR ADIUS server usedfor 80 2.1x authentication, andt heseco ndset assignsthat server
to a server group. The third set of commands associates that server group with the st ateful8 02.1x authentication
profile,then sets theauthentication role and timeout period.
(host)(config)# aaa authentication-server radius <server-name>
acctport <port>
authport <port>
clone <server>
enable
host <ipaddr>
key <psk>
nas-identifier <string>
nas-ip <ipaddr>
retransmit <number>
timeout <seconds>
use-md5
!
(host)(config)# aaa server-group group <server-group>
auth-server <server-name>
!
(host)(config)# aaa authentication stateful-dot1x
server-group <server-group>
default-role <role>
enable
timeout <seconds>
Configuring Statefu l NTLM Authentication
The StatefulNTLM A uthentication profile requires that you specify a server group which includes the servers
performingNTLM authentication, and the role to beas signedto users who are successfullyauthenticat ed.For
details on defining a windows server used for NTLM authentication, see "Configuring a Windows Server"o n page
174.
Whenthe user logs off or shuts down the client machine, the userremains in the authenticated role until the user
ages out, that is, until the userhas sent no traffic for the amount of time specified in the User Idle Timeout setting
in the Configuration > Security > Authentication > Advanced page.
In the WebUI
To create and configurea new instance of a stateful NTLM authentication profile via the WebUI:
1. Navigate to the Configuration > Security > Authentication > L3 A uthenticationpage.
DellPowerConnect W- Series ArubaOS 6.2 | UserGuide | 223