怎么在特定端口下开MAC地址认证
下面是交换机的配置
<4haolou-2F-5120-24-2>disp cu
#
version 5.20, Release 2220P02
#
sysname 4haolou-2F-5120-24-2
#
domain default enable system
#
telnet server enable
#
management-vlan 1000
#
dot1x
dot1x authentication-method eap
#
undo ip http enable
#
password-recovery enable
#
vlan 1
#
vlan 105 to 112
#
vlan 201 to 203
#
vlan 401 to 402
#
vlan 501 to 502
#
vlan 1000
#
radius scheme 2000
primary authentication 10.10.2.50
primary accounting 10.10.2.50
key authentication cipher $c$3$lSSr2PnHmtq+rXw/jISZ6zypR7KCv7548A==
key accounting cipher $c$3$fubUnklnvsm5SrOKZ0a3SasiM7bgd3ZKWQ==
user-name-format without-domain
#
domain system
authentication lan-access radius-scheme 2000 none
authorization lan-access radius-scheme 2000 none
accounting lan-access radius-scheme 2000 none
access-limit disable
state active
idle-cut disable
self-service-url disable
#
user-group system
group-attribute allow-guest
#
local-user 8888
password cipher $c$3$Gu4faoECzoj5pLanQwyi5VfKAg3diX+4dB0QTg==
authorization-attribute level 3
service-type telnet
#
interface NULL0
#
interface Vlan-interface1000
ip address 10.11.1.6 255.255.255.0
#
interface GigabitEthernet1/0/1
port access vlan 401
dot1x
(0)
最佳答案
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论