Configuring Port-Based and Client-Based Access Control (802.1X)
Configuring Switch Ports To Operate As Supplicants for 802.1X Connections to Other Switches
Configuring Switch Ports To Operate As
Supplicants for 802.1X Connections to
Other Switches
802.1X Authentication Commands page 10-15
802.1X Supplicant Commands
[no] aaa port-access < supplicant < [ethernet] < port-list > page 10-40
[auth-timeout | held-period | start-period | max-start | initialize | page 10-40
identity | secret | clear-statistics]
802.1X-Related Show Commands
page 10-42
RADIUS server configuration pages 10-20
A switch port can operate as a supplicant in a connection to a port on another
802.1X-aware switch to provide security on links between 802.1X-aware
switches. (A port can operate as both an authenticator and a supplicant.)
Not e This operation is not recommended on 5300xl switches with software
release E.09.xx or later where a port on the 5300xl switch would be used as
an authenticator for a supplicant port configured on another switch.
Example
Suppose that you want to connect two switches, where:
■ Switch “A” has port A1 configured for 802.1X supplicant operation.
■ You want to connect port A1 on switch “A” to port B5 on switch “B”.
802.1X Supplicant
Port A1
Port B5
RADIUS Server
Switch “A”
Port A1 Configured as an
Switch “B”
LAN Core
Figure 10-4. Example of Supplicant Operation
10-38