HP ProCurve 6400cl Series Access Security Manual page 280

Hide thumbs Also See for ProCurve 6400cl Series:
Table of Contents

Advertisement

Configuring Port-Based and Client-Based Access Control (802.1X)
Terminology
10-6
local authentication is used, in which case the switch performs this
function using its own username and password for authenticating a
supplicant).
Authenticator: In ProCurve applications, a switch that requires a supplicant
to provide the proper credentials (username and password) before being
allowed access to the network.
CHAP (MD5): Challenge Handshake Authentication Protocol.
Client: In this application, an end-node device such as a management station,
workstation, or mobile PC linked to the switch through a point-to-point
LAN link.
Client-Based Authentication: The 802.1X extension in 5300xl switches
running software release E.09.xx or greater. In this operation, multiple
clients on the same port must individually authenticate themselves. Refer
to "5300xl Switches (with Software Release E.09.xx or Greater)" on
page 10-4.
EAP (Extensible Authentication Protocol): EAP enables network access that
supports multiple authentication methods.
EAPOL: Extensible Authentication Protocol Over LAN,
802.1X standard
Friendly Client: A client that does not pose a security risk if given access to
the switch and your network.
MD5: An algorithm for calculating a unique digital signature over a stream of
bytes. It is used by CHAP to perform authentication without revealing the
shared secret (password).
PVID (Port VID): This is the VLAN ID for the untagged VLAN to which an
802.1X port belongs.
Port-Based Authentication: In this operation, the first client on a port to
authenticate itself unblocks the port for the duration of the client's 802.1X-
authenticated session. 5300xl switches running software releases earlier
than E.09.xx, and the 3400cl and 6400cl switches use port-based authen­
tication. Refer to "802.1X Port-Based Access Control on 3400cl/6400cl
Switches, and 5300xl Switches (with Software Release E.08.xx and Ear­
lier)" on page 10-4.
Static VLAN: A VLAN that has been configured as "permanent" on the switch
by using the CLI vlan < vid > command or the Menu interface.
.
as defined in the

Advertisement

Table of Contents
loading

Table of Contents