Switch a switch b – Allied Telesis AT-S63 User Manual

Page 628

Advertising
background image

Chapter 29: 802.1x Port-based Network Access Control

628

Section IV: Security

❑ Set ports used to interconnect switches to the none role. This is

illustrated in Figure 196.

Figure 196. Port-based Authentication Across Multiple Switches

❑ When 802.1x Port-based Network Access Control is activated on a

switch, the feature polls all RADIUS servers specified in the
RADIUS configuration. If three servers have been configured, the
switch polls all three. If server 1 responds, all future requests go
only to that server. If server 1 stops responding, the switch again
polls all RADIUS servers. If server 2 responds, but not server 1, then
all future requests go to servers 1 and 2. If only server 3 responds,
then all future requests go to all three servers.

Switch A

Switch B

FAULT

RPS

MASTER

POWER

CLASS 1

LASER PRODUCT

STATUS

TERMINAL

PORT

1

3

5

7

9

11

2

4

6

8

10

12

13

15

17

19

21

23R

14

16

18

20

22

24R

AT-9424T/SP

Gigabit Ethernet Switch

1

3

5

7

9

11

13

15

17

19

21

23R

2

4

6

8

10

12

14

16

18

20

22

24R

23

24

L/A

D/C

D/C

L/A

D/C

L/A

1000 LINK / ACT

HDX / COL

FDX

10/100 LINK / ACT

PORT ACTIVITY

L/A

1000 LINK / ACT

SFP

SFP

24

SFP

23

Port 6 in
None
Role

Port 22 in
None Role

Port 21 in
None Role

FAULT

RPS

MASTER

POWER

CLASS 1

LASER PRODUCT

STATUS

TERMINAL

PORT

1

3

5

7

9

11

2

4

6

8

10

12

13

15

17

19

21

23R

14

16

18

20

22

24R

AT-9424T/SP

Gigabit Ethernet Switch

1

3

5

7

9

11

13

15

17

19

21

23R

2

4

6

8

10

12

14

16

18

20

22

24R

23

24

L/A

D/C

D/C

L/A

D/C

L/A

1000 LINK / ACT

HDX / COL

FDX

10/100 LINK / ACT

PORT ACTIVITY

L/A

1000 LINK / ACT

SFP

SFP

24

SFP

23

RADIUS
Authentication
Server

Ports in
Authenticator Role

Supplicants with
802.1x Client Software

Advertising