Index

Numerics

802.1X

access control methods, 321 ACL assignment, 331 architecture, 321 authentication, 325

authentication (access device initiated), 324 authentication (client initiated), 324 authentication configuration, 336 authentication initiation, 324

Auth-Fail VLAN, 330 configuration, 321, 332 configuration (global), 332 configuration (port-specific), 333 configuring Auth-Fail VLAN, 336 configuring guest VLAN, 335 configuring MAC-based 802.1X, 336 configuring with ACL assignment, 343 controlled/uncontrolled port, 322 EAP over RADIUS, 323

EAP packet format, 322

EAP relay authentication, 326 EAP relay termination, 327

EAP relay/termination authentication mode, 325

EAP-Message attribute, 324 EAPOL packet format, 323 guest VLAN, 329

packet format, 322

port authorization status, 322

port security advanced control configuration, 428

port security advanced mode configuration, 433

port security basic control configuration, 425 port security basic mode configuration, 430 port security configuration, 421, 423, 430 port security configuration (global), 424 port security modes, 421

port security permitted OUIs configuration, 429

RADIUS Message-Authentication attribute, 324 timers, 328

using authentication with other features, 329 VLAN assignment, 329

802.x

802.1LLDPDU TLV types, 218

802.3LLDPDU TLV types, 218 QoS packet 802.1p priority, 470

A

AAA

configuration, 352, 359

ISP domain accounting methods configuration, 357

ISP domain authentication methods configuration, 355

ISP domain authorization methods configuration, 356

ISP domain configuration, 354 RADIUS implementation, 363, 374 user management by ISP domains, 353

absolute time range (ACL), 452

absolute time range configuration (ACL), 453 access control methods (802.1X), 321 accounting

AAA configuration, 352, 359

AAAISP domain accounting methods configuration, 357

RADIUS common parameter configuration, 369 RADIUS scheme configuration, 368

RADIUS server configuration, 373

ACL

802.1X assignment, 331 advanced configuration, 456, 463 assignment (MAC authentication), 405 automatic rule numbering, 451, 451 automatic rule renumbering, 451 basic configuration, 455, 462 categories, 450

configuration, 450, 489 configuring 802.1X assignment, 343 Ethernet frame header configuration, 459

506