User's Manual

Table Of Contents
Smart Managed Pro Switches MS510TX and MS510TXPP
Manage Device Security User Manual244
The default password is password.
The System Information page displays.
5. Select Security > Port Authentication > Basic > 802.1X Configuration.
The 802.1X Configuration page displays.
6. To enable the 802.1X administrative mode on the switch, select the Port Based
Authentication State Enable radio button.
The default value is Disable.
Note: If 802.1X is enabled, authentication is performed by a RADIUS server.
This means that the primary authentication method must be RADIUS.
To set the method, select Security > Management Security >
Authentication List and select Radius as method 1 for defaultList.
For more information, see
Configure RADIUS Servers on page 220
and Configure Authentication Lists on page 229.
When port-based authentication is globally disabled, the switch does not check for
802.1X authentication before allowing traffic on any ports, even if the ports are configured
to allow only authenticated users.
7. To enable and configure a guest VLAN, do the following:
a. Select the Guest VLAN Enable radio button.
The default value is Disable. A guest VLAN can allow unauthenticated users to gain
temporary and limited access to network resources.
b. From the Guest VLAN ID menu, select the VLAN that must serve as the guest
VLAN.
c. In the Guest VLAN Period field, enter the maximum period that access to the guest
VLAN is allowed.
The period can range from 30 to 180 minutes. The default value is 90 minutes.
Note: For the guest VLAN to become functional, you still must enable the
guest VLAN on one or more ports (see
Manage Port Authentication
on page 245).
8. To enable Extensible Authentication Protocol (EAP) over LAN (EAPoL) flood support on
the switch, select the EAPOL Flood Mode Enable radio button.
The default value is Disable. If 802.1x is disabled on the switch, EAPoL frames are
forwarded.
9. Click the Apply button.
Your settings are saved.