802.1X Configuration Task List; Enabling 802.1X; Configuration Guidelines - HP 5500 HI Series Configuration Manual

Security
Hide thumbs Also See for 5500 HI Series:
Table of Contents
If RADIUS authentication is used, create user accounts on the RADIUS server.
If local authentication is used, create local user accounts on the access device and set the service
type to lan-access.

802.1X configuration task list

Task

Enabling 802.1X

Enabling EAP relay or EAP termination
Setting the port authorization state
Specifying an access control method
Setting the maximum number of concurrent 802.1X users on a port
Setting the maximum number of authentication request attempts
Setting the 802.1X authentication timeout timers
Configuring the online user handshake function
Configuring the authentication trigger function
Specifying a mandatory authentication domain on a port
Configuring the quiet timer
Enabling the periodic online user re-authentication function
Configuring a port to send EAPOL frames untagged
Setting the maximum number of 802.1X authentication attempts for MAC
authentication users
Configuring a VLAN group
Configuring an 802.1X guest VLAN
Configuring an 802.1X Auth-Fail VLAN
Configuring an 802.1X critical VLAN
Specifying supported domain name delimiters
Enabling 802.1X

Configuration guidelines

If the PVID of a port is a voice VLAN, the 802.1X function cannot take effect on the port. For more
information about voice VLANs, see Layer 2
802.1X is mutually exclusive with link aggregation and service loopback group configuration on a
port.
Do not use the BPDU drop feature on an 802.1X-enabled port. The BPDU drop feature discards
802.1X packets arrived on the port.
LAN Switching Configuration Guide.
78
Remarks
Required
Optional
Optional
Optional
Optional
Optional
Optional
Optional
Optional
Optional
Optional
Optional
Optional
Optional
Optional
Optional
Optional
Optional
Optional

Hide quick links:

Table of Contents
loading

Table of Contents