802.1Xǧ¾Ú
802.1x¡áPort-Based¡¡Network¡¡Access¡¡Control
¤Ä¤Þ¤ê¡¢¡Ê¥Ý¡¼¥Èñ°Ì¤Î¡Ë¥¢¥¯¥»¥¹¥³¥ó¥È¥í¡¼¥ë¡£
ǧ¾Úµ¡Ç½¤Ç¤Ï¤Ê¤¤¡£
¼ÂºÝ¤Ë¤Ï¡¢¡Ö802.1xǧ¾Ú¡×¤È¤¤¤¦¸ÀÍդˤơ¢Ç§¾Ú¤Î»ÅÁȤߡʤä°Å¹æ²½¤Î»ÅÁȤߡˤò²Ã¤¨¤¿»ÅÁȤߤò°ÕÌ£¤¹¤ë¤³¤È¤¬Â¿¤¤¡£
¤¿¤À¡¢¤â¤È¤â¤È¤Î°ÕÌ£¤Ï¥¢¥¯¥»¥¹¥³¥ó¥È¥í¡¼¥ë¤Ç¤¢¤ë¤³¤È¤Ï˺¤ì¤Ê¤¤¤Ç¤ª¤¤Þ¤·¤ç¤¦¡£
Åоì¿Íʪ¤Ï
¡¥µ¥×¥ê¥«¥ó¥È¡Ê¥¯¥é¥¤¥¢¥ó¥ÈPC¤Ë¥¤¥ó¥¹¥È¡¼¥ë¤µ¤ì¤ë¥½¥Õ¥È¡Ë
¢¥ª¡¼¥»¥ó¥Æ¥£¥±¡¼¥¿¡Êǧ¾ÚSwitch¡¢AP¤Ê¤É¡Ë
£Ç§¾Ú¥µ¡¼¥Ð
¤Ç¤¢¤ë¡£
¢¡IEEE 802.1X
X¤ÏÂçʸ»ú¡£¿ô³Ø¤Îx¤Î¤è¤¦¤Ë¡¢¿§¡¹¤Êʸ»ú¤¬Æþ¤ë¤È´ª°ã¤¤¤µ¤ì¤Ê¤¤¤è¤¦¤Ë¡£
¢¨¾ðÊó½èÍýµ»½Ñ¼Ô»î¸³¤Ç¤Ï¡¢¾®Ê¸»ú¤ò»È¤Ã¤Æ¤¤¤ë¡£
----------------------------
¼ÂºÝ¤ÎÀßÄê
----------------------------
¢£Switch¤ÎÀßÄê¡Ê¥ª¡¼¥»¥ó¥Æ¥£¥±¡¼¥¿¡Ë
¡¦dot1x¤ò͸ú¡§dot1x system-auth-control
¡¦³ÆIF¤Ë¤ÆÍ¸ú¤Ë¤¹¤ë¡§dot1x port-control auto
¡¦Radius¥µ¡¼¥Ð¤ÎÀßÄê¡¡IP¡§host 192.168.1.20¡¡Ç§¾Ú¥¡¼¡§abc
¢£Radius¡Êǧ¾Ú¥µ¡¼¥Ð¡Ë
¡¦IP¥¢¥É¥ì¥¹¤ÎÀßÄê¡§192.168.1.20
¡¦¥æ¡¼¥¶¾ðÊó¡§ID¡¢¥Ñ¥¹¥ï¡¼¥É¤ÎÀßÄê
¡¦¥¹¥¤¥Ã¥Á¤ÎIP¥¢¥É¥ì¥¹¡¢Ç§¾Ú¥¡¼¤ÎÀßÄê¡ÊSwitch¦¤È¹ç¤ï¤»¡¢abc¡Ë
¡¦Ç§¾ÚÊý¼°¤ÎÀßÄê
¢£¥Ñ¥½¥³¥ó¡Ê¥µ¥×¥ê¥«¥ó¥È¡Ë
¥µ¥×¥ê¥«¥ó¥È¤ÎÀßÄê¡ÊWindowsɸ½à¤Ç¤â¤è¤¤¡Ë
¡¦802.1xǧ¾Ú¤ò͸ú¤Ë¤¹¤ë¡£
¡¦EAP¤Î¼ïÎࡦ¡¦¡¦¡¦EAP-MD5
----------------------------
ưºî
----------------------------
¡¥Í¥Ã¥È¥ï¡¼¥¯¥±¡¼¥Ö¥ë¤òÀܳ¤¹¤ë¡£
¢802.1xǧ¾Ú¤¬Í¸ú¤Ë¤Ê¤Ã¤Æ¤¤¤ë¤Î¤Ç¡¢¥µ¥×¥ê¥«¥ó¥È¤¬IDÆþÎϲèÌ̤òµ¯Æ°¤¹¤ë¡£
£ID¤È¥Ñ¥¹¥ï¡¼¥É¤òÆþ¤ì¤ë
¤¥¹¥¤¥Ã¥Á¤ÏUNAUTHORIZED¢ªAUTHORIZED¤Ë¤Ê¤ê¡¢ÄÌ¿®¤¬²Äǽ¤Ë¤Ê¤ë¡£¥¤¥ó¥¿¡¼¥Õ¥§¡¼¥¹¤¬UP¤¹¤ë¡£
¡Ê¥¡ËDHCP¤Ç¤¢¤ì¤Ð¡¢IF¤¬UP¤·¤¿¤Î¤Ç¡¢IP¤Î¼èÆÀ¤ËÆþ¤ë¡£
