Radius accounting, Supplicant logs on, Supplicant logs off – Allied Telesis AT-S63 User Manual

Page 730: At-9400 series switch (b)

Advertising
background image

Chapter 31: 802.1x Port-based Network Access Control

730

Section VII: Port Security

example, you were to make a client’s port an authenticator, the client
would have to log on twice when trying to access switch A, once on its port
on switch B as well as the authenticator port on switch A. This is not
permitted. Consequently, in our example the clients on switch B have full
access to that switch, but are denied access to switch A until they log on to
port 6 on switch A.

Figure 255. Authenticator Port in Multiple Operating Mode - Example 2

RADIUS

Accounting

The AT-S63 management software supports RADIUS accounting for
switch ports set to the Authenticator role. This feature sends information to
the RADIUS server about the status of its supplicants. You can view this
information on the RADIUS server to monitor network activity and use.

The switch sends accounting information to the RADIUS server when one
of the following events occur:

ˆ

Supplicant logs on

ˆ

Supplicant logs off

ˆ

A change in the status of an Authenticator port during an active
Supplicant session (for example, the port is reset or is changed from
the Authenticator role to None role while a Supplicant is logged on)

AT-9400 Series Switch (A)

FAULT

RPS

MASTER

POWER

CLASS 1

LASER PRODUCT

STATUS

TERMINAL

PORT

1

3

5

7

9

11

2

4

6

8

10

12

13

15

17

19

21

23R

14

16

18

20

22

24R

AT-9424T/SP

Gigabit Ethernet Switch

1

3

5

7

9

11

13

15

17

19

21

23R

2

4

6

8

10

12

14

16

18

20

22

24R

23

24

L/A

D/C

D/C

L/A

D/C

L/A

1000 LINK / ACT

HDX / COL

FDX

10/100 LINK / ACT

PORT ACTIVITY

L/A

1000 LINK / ACT

SFP

SFP

24

SFP

23

RADIUS
Authentication
Server

Port 6
Role: Authenticator
Operating Mode: Multiple
Piggy-back Mode: -----

Port 11
Role: Supplicant
Username: switch24
Password: waveform

FAULT

RPS

MASTER

POWER

CLASS 1

LASER PRODUCT

STATUS

TERMINAL

PORT

1

3

5

7

9

11

2

4

6

8

10

12

13

15

17

19

21

23R

14

16

18

20

22

24R

AT-9424T/SP

Gigabit Ethernet Switch

1

3

5

7

9

11

13

15

17

19

21

23R

2

4

6

8

10

12

14

16

18

20

22

24R

23

24

L/A

D/C

D/C

L/A

D/C

L/A

1000 LINK / ACT

HDX / COL

FDX

10/100 LINK / ACT

PORT ACTIVITY

L/A

1000 LINK / ACT

SFP

SFP

24

SFP

23

Client Ports:
Role: None

Clients with

802.1x Client

Software

AT-9400 Series Switch (B)

Advertising