This page is for configuring the port authentication for the interface.
You can also change the detailed settings by pressing the "Advanced settings" button.
Enter the settings, and then press the "Confirm" button.
If there are no mistakes in the input content of the confirmation screen, press the "OK" button.
-
Applicable interface
-
Authentication functions to be enabled
-
Host mode
-
Authentication order
-
MAC address registration type after MAC authentication
-
Select a registration type for authenticated MAC addresses to the MAC address table.
-
The aging timer automatically deletes MAC addresses registered as dynamic entries from the MAC address table.
-
The "clear auth state" or the "authclear-state time" command can delete MAC addresses registered as staticentries from the MAC address table.
-
Guest VLAN
-
Specify the guest VLAN.
-
Press the "Select" button, and then select a VLAN ID from the "VLAN list" dialog.
-
When a guest VLAN is configured, devices that have not successfully authenticated can also access the specified VLAN.
-
This cannot be used with web authentication.
-
Dynamic VLAN
-
Specify whether or not to use dynamic VLAN.
-
If you set to use dynamic VLAN, VLANs are dynamically assigned to each device that has successfully authenticated.
-
The VLAN to be assigned depends on the authentication server settings.
-
Waiting time for a response from device
-
Authentication restriction period after authentication failure
-
Specify the period to restrict authentication after the authentication of a device fails.
-
The input range is from 1 to 65535 seconds.
-
While authentication is restricted, all packets received on the target interface are discarded.
-
Re-authentication of authenticated device
-
Clearing authentication status
-
802.1X authentication operation mode
-
Forwarding control on unauthenticated ports for 802.1X authentication
-
When 802.1X authentication is enabled,specify the communication restriction method for devices that have notsuccessfully authenticated from the following.
-
If any of the following conditions are met, this setting is ignored, and the function operates as Discard only receiving.
-
If the guest VLAN is configured, this setting does not affect the communication restrictions.
-
Number of times to send EAPOL packets