beautypg.com

Allied Telesis AT-GS950/8 User Manual

Page 247

background image

AT-GS950/8 Web Interface User Guide

247

Supplicant Mode - This parameter specifies if one or more
supplicants can be authenticated on a port.

Single - The port is set to permit only one supplicant to log on
and forwards only the traffic of that supplicant. After one
supplicant has logged on, the port discards packets from any
other supplicant.

Multiple - The port is set to permit multiple clients on an
authenticator port. An authenticator mode forwards packets from
all clients once one client has successfully logged on.

Piggyback Mode - This mode is used in conjunction with the
Multiple Supplicant Mode. This mode is typically used in situations
where you want to add 802.1x port-based network access control
to a switch port that is supporting multiple clients, but do not want
to create individual accounts for all the clients on the RADIUS
server. After one client has successfully logged, the port permits
the other clients to piggy-back onto the initial client’s log on, so that
they can forward packets through the port without being
authentication.

Enabled - The Piggyback Mode is Enabled.

Disabled - The Piggyback Mode is Disabled.

VLAN Assignment - This parameter allows:

Enabled - The VLAN Assignment is Enabled.

Disabled - The VLAN Assignment is Disabled.

Secure VLAN - This field is inactive

Guest VLAN ID - This parameter specifies the VLAN ID that is
designated as a Guest VLAN. The range is 0 to 4000 where 0 is
disabled.

When a supplicant account is created on the RADIUS server, a
VLAN identifier must be entered along with a username and
password combination or MAC address information. If the switch
receives a valid VLAN ID or VLAN name from the RADIUS server,
it moves the authenticator port to the designated Guest VLAN and
changes the port to the authorized state.

Transmission Period - Sets the switch-to-client retransmission
time for EAPrequest frames. The range is 1 to 65535 seconds.

Quiet Period - Sets the number of seconds that authenticator
ports wait after a failed authentication before accepting
authentication requests again. The range is 1 to 65535 seconds.

Supplicant Timeout - Sets the switch-to-client retransmission time
for EAPrequest frames. The range is 1 to 65535 seconds.