Using IEEE 802.1X
8WFY-075
In a network envir
onment with IEEE 802.1X authentication, only client devices (supplicants) authenticated by the
authentication server (RADIUS server) are allowed to connect to the network via the LAN switch (authenticator),
thereby blocking unauthorized access. When connecting the machine to a network that uses IEEE 802.1X
authentication, you must congure the settings on the machine such as the authentication method managed by the
authentication server.
IEEE 802.1X Authentication Methods(P. 356)
Setting IEEE 802.1X(P. 356)
IEEE 802.1X Authentication Methods
The follo
wing IEEE 802.1X authentication methods are supported:
TLS
The machine and authentication server authenticate each other by mutually verifying their certicates. This
cannot be used together with another authentication method.
TTLS
This authentication method uses a user name and password for machine authentication and a CA certicate
for the server authentication. MSCHAPv2 or PAP can be selected as the internal protocol, and TTLS can be
used together with PEAP.
PEAP
The required settings are almost the same as those for TTLS, with MSCHAPv2 used as the internal protocol.
Setting IEEE 802.1X
First enable IEEE 802.1X, and then set the authentication method.
This section describes ho
w to congure the settings using Remote UI from a computer.
On the control panel, select [Menu] in the [Home] screen, and then select [Preferences] to congure the settings.
However, the control panel can only be used to enable or disable IEEE 802.1X.
[IEEE 802.1X Settings](P. 434)
Administr
ator privileges are required. The machine must be restarted to apply the settings.
Required Preparations
● When using TLS as the authentication method, pr
epare the key and certicate issued by the certicate
authority and used for authentication of the machine. Managing and Verifying a Key and
Certicate(P. 358)
* A preinstalled CA certicate or a CA certicate installed from Remote UI is used for server authentication.
● When using TTLS or PEAP as the authentication method, TLS-encrypt communication using Remote UI.
Using TLS(P. 354)
1
Log in to Remote UI in System Manager Mode.
Starting Remote UI(P. 393)
2
On the Portal page of Remote UI, click [Settings/Registration]. Portal Page of
Remote UI(P. 395)
3
Click [Network Settings] [IEEE 802.1X Settings] [Edit].
Security
356