Configuration Guide User guide

FastIron Configuration Guide 1849
53-1002494-02
Chapter
45
Multi-Device Port Authentication
Table 308 lists individual Brocade switches and the multi-device port authentication features they
support. These features are supported in the Layer 2, base Layer 3, edge Layer 3, and full Layer 3
software images, except where explicitly noted.
TABLE 308 Supported Multi-device port authentication (MDPA) features
Feature FESX
FSX 800
FSX 1600
FWS FCX ICX 6610 ICX 6430
ICX 6450
Multi-Device Port Authentication Yes Yes Yes Yes Yes
Support for Multi-Device Port
Authentication together with:
Dynamic VLAN assignment Yes Yes Yes Yes Yes
Dynamic ACLs Yes Yes Yes Yes Yes
802.1X Yes Yes Yes Yes Yes
Dynamic ARP inspection with
dynamic ACLs
YesNoNoNoYes
DHCP snooping with dynamic ACLs Yes No No No Yes
Denial of Service (DoS) attack
protection
Yes No Yes Yes Yes
Source guard protection Yes Yes Yes Yes Yes
ACL-per-port-per-VLAN Yes Yes Yes Yes Yes
Automatic removal of Dynamic VLAN for
MAC authenticated ports
YesNoNoNoYes
Authenticating multiple MAC addresses on
an interface
Yes Yes Yes Yes Yes
Authenticating clients that send tagged
packets on non-member ports
YesNoNoNoNo
Specifying the format of the MAC
addresses sent to the RADIUS server
Yes Yes Yes Yes Yes
Specifying the authentication-failure
action
Yes Yes Yes Yes Yes
Password override Yes Yes Yes Yes Yes
Specifying the RADIUS timeout action Yes Yes Yes Yes Yes
SNMP Traps Yes Yes Yes Yes Yes
MAC Address Filters Yes Yes Yes Yes Yes
Aging time for blocked MAC Addresses Yes Yes Yes Yes Yes