Configuration Guide Vol. 1


3.6.1 IEEE802.1X

The following describes the capacity limits for IEEE 802.1X.

IEEE 802.1X of the Switch supports the following three authentication modes:

The following table describes the total number of IEEE 802.1X-enabled ports per switch when using VLAN-based authentication:

Table 3-34: Total number of ports per switch for which IEEE802.1X can be set

Model

Total number of ports per switch for which IEEE802.1X can be set #

All models

1024

#

The total number of IEEE 802.1X-enabled ports per switch is the maximum value of the sum of the VLAN ports in all VLANs for which VLAN-based authentication has been set. When a VLAN includes one or more channel groups, a channel group is counted as one port regardless of the number of physical ports in the channel group. Also, a port is counted for each of the tagged VLANs configured on the port. For example, when 10 VLANs are multiplexed to a single port using tags, a total of 10 ports are counted when VLAN-based authentication is enabled on those 10 VLANs.

The following table describes the maximum number of authenticated terminals for each authentication mode.

Table 3-35: Maximum number of authenticated terminals per authentication mode unit

Model

Authentication modes

Port-based authentication

VLAN-based authentication (static)

VLAN-based authentication (dynamic)

All models

64/port

256 per VLAN

1024 # /Equipment

#

When IEEE 802.1X authentication (VLAN-based (dynamic)) and Web authentication (dynamic VLAN mode) are both enabled, the total authenticated terminals allowed for the both authentication modes is 1024 per switch.

The following table describes the maximum number of authenticated terminals for the Switch.

Table 3-36: Maximum number of authenticated terminals for the Switch

Model

Maximum number of authenticated terminals summed over three modes

All models

1024 # /Equipment

#

When IEEE 802.1X authentication (port-based and VLAN-based (static)), Web authentication (fixed VLAN mode), and MAC-based authentication are all enabled, the total authenticated terminals allowed among all the authentication modes is 1024 per switch.