Configuring Authentication Order and Priority
Users can set the authentication order and priority for the 802.1X802.1X is an IEEE standard for port-based network access control designed to enhance 802.11 WLAN security. 802.1X provides an authentication framework that allows a user to be authenticated by a central authority. and MACMedia Access Control. A MAC address is a unique identifier assigned to network interfaces for communications on a network. authentication methods for each port. The switch attempts to authenticate a client based on the authentication order and priority settings.
- If both 802.1X and MAC authentication are enabled on the same port without configuring authentication order and priority , then both the authentication methods are triggered in parallel and might cause issues for the clients.
- If authentication order and priority are configured, then authentication requests are processed sequentially and authentication method with high priority is used to access the client. If both 802.1X and MAC authentication are enabled on the same port, and 802.1X authentication is set as the first authentication method and MAC authentication is set as the first authentication priority , then MAC authentication is used to authenticate the clients.
- If only one authentication method is enabled on the port, then the switch will not consider authentication order and priority for authentication.
Authentication order and priority configuration is not supported on the Aruba 2920 Switch Series.
To configure the authentication order and priority, complete the following steps:
- In the
- To select a switch group in the filter:
- Set the filter to a group containing at least one switch.
The dashboard context for the group is displayed. - Under , click > .
- Click the icon to view the switch configuration dashboard.
- Set the filter to a group containing at least one switch.
- To select a switch in the filter:
- Set the filter to or a group containing at least one switch.
- Under
A list of switches is displayed in the view. , click > . - Click a switch under
The dashboard context for the switch is displayed. . - Under
The tabs to configure the switch is displayed. , click .
app, select one of the following options: - To select a switch group in the filter:
- Click > . The Authentication page is displayed.
- Expand the accordion. The Ports Settings table displays the Authentication Order and Authentication Priority specified for the ports.
- Click + to add ports with authentication order and priority. The Add Ports window is displayed.
- Configure the following parameters:
- —Select one or more ports for setting authentication order and priority.
- —Select either or as the first method for authentication. For example, if you select as the first authentication method, then is used first for authenticating clients on the port.
- —Select either or as the first priority for authentication. Authentication priority takes precedence over authentication order, and the authentication method with higher priority is used to access clients.
- Click .
Editing the Authentication Order and Priority
To edit the authentication order and priority, select one or more ports for which you want to modify authentication order and priority, and click the edit icon.
When editing multiple ports, if authentication order and priority are different on ports, then the existing settings are preserved. You can override the existing settings by selecting an order or a priority.
Deleting the Authentication Order and Priority
To delete the authentication order and priority, select one or more ports for which you want to delete authentication order and priority, and click the delete icon.