NETGEAR M4350-24F4V 24-Port 10G SFP+ Managed AV Network Switch User Manual
Page 690
3. Click the Main UI Login button.
The main UI login page displays in a new tab.
4. Enter admin as the user name, enter your local device password, and click the Login
button.
The first time that you log in, no password is required. However, you then must
specify a local device password to use each subsequent time that you log in.
The System Information page displays.
5. Select Security > Port Authentication > Basic > 802.1X Configuration.
The 802.1X Configuration page displays.
6. Select the Dot1x Admin Mode Disable or Enable radio button:
•
Enabled: 802.1X port-based authentication is globally enabled on the switch.
•
Disabled: 802.1X port-based authentication is globally disabled on the switch.
This is the default setting. The switch does not check for 802.1X authentication
before allowing traffic on any ports, even if individual ports are configured to
allow only authenticated users.
7. Select the Authentication Admin Mode Disable or Enable radio button:
•
Enabled: The authentication admin mode is enabled, requiring authentication
to be performed by a RADIUS server. This means that the primary authentication
method must be RADIUS. To set the method, select Security > Management
Security > Authentication List > Authentication List and select Radius as method
1 for defaultList. For more information, see Configure a login authentication list
on page 650.
•
Disabled: The authentication admin mode is disabled, which is the default setting.
The switch does not check for 802.1X authentication before allowing traffic on
any ports, even if the 802.1X port-based authentication is globally enabled (see
the previous step) and the ports are configured to allow only authenticated users.
8. Select the VLAN Assignment Mode Disable or Enable radio button.
When enabled, this feature allows a port to be placed into a particular VLAN based
on the result of the authentication or type of 802.1X authentication a client uses
when it accesses the device. The authentication server can provide information to
the device about which VLAN to assign the supplicant. The default is Disable.
9. Select the EAPOL Flood Mode Disable or Enable radio button.
This selection specifies whether Extensible Authentication Protocol (EAP) over LAN
(EAPoL) flood support is enabled on the switch. The default is Disable.
10. From the Dynamic VLAN Creation Mode menu, select Disable or Enable.
If RADIUS-assigned VLANs are enabled, the RADIUS server includes the VLAN ID in
the 802.1X tunnel attributes of its response message to the device. If dynamic VLAN
Main User Manual
690
Manage Switch Security
Fully Managed Switches M4350 Series Main User Manual