Administrator Guide

166 | Mobility Access Switch Configuration for 802.1X Authentication Dell Networking W-ClearPass Deployment Guide
6. Apply the AAA profile to the physical interface or interface group.
You can now configure an interface for 802.1X authentication.
Configuring Authentication with a RADIUS Server
In order to authenticate to the network, the client communicates with the Mobility Access Switch through an
EAP tunnel (see Figure 146). Therefore, the network authentication and encryption configured must be the
same on both the client and the Mobility Access Switch.
Figure 146 802.1x Authentication with a RADIUS Server
To configure 802.1X authentication with a RADIUSserver:
1. For the Mobility Access Switch to communicate with the authentication server, you must configure the
following paramters on the Mobility Access Switch:
Parameter Action/Description
IP address 1. Enter the IP address of the authentication server.
Authentication port 2. Enter the Authentication port number on the authentication server. Default: 1812.
Accounting port 3. Enter the Accounting port number on the authentication server. Default: 1813.
4. You must configure the supplicant (the client device) and authentication server (the Mobility Access Switch)
to use the same EAP type.
The Mobility Access Switch doesn't need to know the EAP type used between the supplicant and
authentication server.
5. You must configure the authentication server with the IP address of the RADIUS client, which in this case is
the Mobility Access Switch.
6. Be sure to configure both the Mobility Access Switch and the authentication server to use the same shared
secret.