Configuring 802.1X Port-Based Authentication
This chapter describes how to configure IEEE 802.1X port-based authentication on the Catalyst 4500
series switch to prevent unauthorized client devices from gaining access to the network.
This chapter includes the following major sections:
•
•
•
•
•
•
For complete syntax and usage information for the switch commands used in this chapter, first look at
Note
the Cisco Catalyst 4500 Series Switch Command Reference and related publications at this location:
http://www.cisco.com/en/US/products/hw/switches/ps4324/index.html
If the command is not found in the Catalyst 4500 Series Switch Command Reference, it will be found in
the larger Cisco IOS library. Refer to the Cisco IOS Command Reference and related publications at this
location:
http://www.cisco.com/en/US/products/ps6350/index.html
About 802.1X Port-Based Authentication
802.1X defines 802.1X port-based authentication as a client-server based access control and
authentication protocol that restricts unauthorized clients from connecting to a LAN through publicly
accessible ports. An authentication server validates each supplicant (client) connected to an
authenticator (network access switch) port before making available any services offered by the switch or
the LAN.
OL-25340-01
About 802.1X Port-Based Authentication, page 44-1
Configuring 802.1X Port-Based Authentication, page 44-26
Controlling Switch Access with RADIUS, page 44-92
Displaying 802.1X Statistics and Status, page 44-113
Displaying Authentication Details, page 44-114
Cisco IOS Security Features in Cisco IOS XE 3.1.0 SG Release, page 44-118
C H A P T E R
Software Configuration Guide—Release IOS XE 3.3.0SG and IOS 15.1(1)SG
44
44-1