At-9400 series switch (b) – Allied Telesis AT-S63 User Manual

Page 728

Advertising
background image

Chapter 31: 802.1x Port-based Network Access Control

728

Section VII: Port Security

Figure 253. Single Operating Mode with Multiple Clients Using the Piggy-

back Feature - Example 3

The second type of operating mode for an authenticator port is the Multiple
mode. You use this mode when a port is supporting more than one client
and you want each client to log on individually before being permitted to
use the port, perhaps to increase network security. An authenticator port
in this mode can support up to a maximum of 20 clients, with a total
maximum of 480 per switch. You must provide each client with a separate
username and password combination and the clients must provide their
combinations to forward traffic through the switch port.

Selecting the Multiple mode for an authenticator port disables the piggy-
back mode, because this operating mode precludes piggy-backing.

An example of this authenticator operating mode is illustrated in Figure
254. T
he clients are connected to a hub or non-802.1x-compliant switch
which is connected to an authenticator port on an AT-9400 Series switch.
Each client is given a separate username and password combination to

AT-9400 Series Switch (A)

FAULT

RPS

MASTER

POWER

CLASS 1

LASER PRODUCT

STATUS

TERMINAL

PORT

1

3

5

7

9

11

2

4

6

8

10

12

13

15

17

19

21

23R

14

16

18

20

22

24R

AT-9424T/SP

Gigabit Ethernet Switch

1

3

5

7

9

11

13

15

17

19

21

23R

2

4

6

8

10

12

14

16

18

20

22

24R

23

24

L/A

D/C

D/C

L/A

D/C

L/A

1000 LINK / ACT

HDX / COL

FDX

10/100 LINK / ACT

PORT ACTIVITY

L/A

1000 LINK / ACT

SFP

SFP

24

SFP

23

RADIUS
Authentication
Server

Port 6:
Role: None
or
Role: Authenticator
Operating Mode: Single
Piggy-back Mode: Enabled

Port 11:
Role: None
or
Role: Supplicant

FAULT

RPS

MASTER

POWER

CLASS 1

LASER PRODUCT

STATUS

TERMINAL

PORT

1

3

5

7

9

11

2

4

6

8

10

12

13

15

17

19

21

23R

14

16

18

20

22

24R

AT-9424T/SP

Gigabit Ethernet Switch

1

3

5

7

9

11

13

15

17

19

21

23R

2

4

6

8

10

12

14

16

18

20

22

24R

23

24

L/A

D/C

D/C

L/A

D/C

L/A

1000 LINK / ACT

HDX / COL

FDX

10/100 LINK / ACT

PORT ACTIVITY

L/A

1000 LINK / ACT

SFP

SFP

24

SFP

23

Clients with

802.1x Client

Software

AT-9400 Series Switch (B)

Client Ports:
Role: Authenticator
Operating Mode: Single
Piggy-back Mode: Disabled

Advertising