5500交换机接入思科802.1x服务器,最终用户需要我根据思科交换机命令,来编写H3C 5500交换命令,以实现802.1x的功能。
当前使用的服务器和客户端是思科软件,中间的交换机是H3C 7506E。5500-ei,S3100v2
请问我编写的H3C命令是否与思科给的交换机命令匹配?
思科命令如下:
interface FastEthernet0/31
switchport access vlan 9
switchport mode access
switchport port-security violation protect
no logging event link-status
authentication event fail action
next-method
authentication event server dead action
authorize vlan 9
authentication event no-response action
authorize vlan 150
authentication event server alive action
reinitialize
authentication order dot1x mab
authentication priority dot1x mab
authentication port-control auto
authentication periodic
authentication timer reauthenticate 30
authentication violation protect
mab
no snmp trap link-status
dot1x pae authenticator
dot1x timeout quiet-period 1
dot1x timeout tx-period 1
dot1x max-req 1
storm-control broadcast level 10.00
spanning-tree portfast
end
我编写的H3C命令如下:
dot1x quiet-period
dot1x timer quiet-period 10
dot1x timer tx-period 10
dot1x timer reauth-period 7200
dot1x authentication-method eap
radius scheme system
primary authentication 10.252.136.41
primary accounting 10.252.136.41
secondary authentication 10.252.136.42
secondary accounting 10.252.136.42
key
authentication cipher $c$3$WSSFhKnW+nHQjMNdMY7tWEyx01YrITBGXWL7
key
accounting cipher $c$3$m2bReiywzr/BbB8rAo6CahGheAE6P43G9yrz
timer response-timeout 5
user-name-format without-domain
nas-ip 10.46.1.4
accounting-on enable
domain system
authentication default radius-scheme system
local
authorization default radius-scheme system
accounting default radius-scheme system local
access-limit disable
state active
idle-cut disable
self-service-url disable
accounting optional
interface GigabitEthernet1/0/2
port
link-mode bridge
port
access vlan 9
stp
edged-port enable
port-security port-mode userlogin
dot1x re-authenticate
dot1x guest-vlan 15
undo
dot1x handshake
(0)
我的意思是我所配置H3C的命令,是否合思科的每一条命令都匹配,是否符合思科的实现方式。
因为我没有思科的服务器和客户端软件,无法测试。
所以只能通过这种笨方法来分析,谢谢!
(0)
暂无评论
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论