02.10.2013 Views

FTOS Configuration Guide for the C-Series - Force10 Networks

FTOS Configuration Guide for the C-Series - Force10 Networks

FTOS Configuration Guide for the C-Series - Force10 Networks

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Chapter 35 802.1X<br />

802.1X is supported on plat<strong>for</strong>ms: c e s<br />

Protocol Overview<br />

802.1X is a method of port security. A device connected to a port that is enabled with 802.1X is disallowed<br />

from sending or receiving packets on <strong>the</strong> network until its identity can be verified (through a username and<br />

password, <strong>for</strong> example). This feature is named <strong>for</strong> its IEEE specification.<br />

802.1X employs Extensible Au<strong>the</strong>ntication Protocol (EAP) to transfer a device’s credentials to an<br />

au<strong>the</strong>ntication server (typically RADIUS) via a mandatory intemediary network access device, in this case,<br />

a <strong>Force10</strong> switch. The network access device mediates all communication between <strong>the</strong> end-user device and<br />

<strong>the</strong> au<strong>the</strong>ntication server so that <strong>the</strong> network remains secure. The network access device uses EAP over<br />

E<strong>the</strong>rnet (EAPOL) to communicate with <strong>the</strong> end-user device and EAP over RADIUS to communicate with<br />

<strong>the</strong> server.<br />

End-user Device <strong>Force10</strong> switch RADIUS Server<br />

EAP over LAN (EAPOL) EAP over RADIUS<br />

fnC0033mp<br />

<strong>FTOS</strong> <strong>Configuration</strong> <strong>Guide</strong>, version 7.7.1.0 673

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!