Juniper Networks
Log in
|
How to Buy
|
Contact Us
|
United States (Change)
Choose Country
Close

Choose Country

North America

  • United States

Europe

  • Deutschland - Germany
  • España - Spain
  • France
  • Italia - Italy
  • Россия - Russia
  • United Kingdom

Asia Pacific

  • Asean Region (Vietnam, Indonesia, Singapore, Malaysia)
  • Australia
  • 中国 - China
  • India
  • 日本 - Japan
  • 대한민국 - Korea
  • 台灣 - Taiwan
Solutions
Products & Services
Company
Partners
Support
Education
Community
Security Intelligence Center

Technical Documentation

Technical Documentation
 
CLI Explorer New
 
Content Explorer New
 
Documentation Help New
 
Enterprise MIBs
 
EOL Documentation
 
Feature Explorer Login required New
 
Glossary
 
Portable Libraries
 
Home > Support > Technical Documentation > EX Series > Access Control on EX Series Switches
Print
Rate and give feedback:  Feedback Received. Thank You!
Rate and give feedback: 
Close
This document helped resolve my issue.  Yes No

Additional Comments

800 characters remaining

May we contact you if necessary?

Name:  
E-mail: 
Submitting...

Access Control on EX Series Switches

  • Junos® OS for EX Series Switches, Release 11.1
  • Overview
  • Configuration
  • Administration
  • Troubleshooting
Software Features Overview

EX Series Switch Software Features Overview

Security Features for EX Series Switches Overview

Access Control Overview

802.1X for EX Series Switches Overview

Understanding Authentication on EX Series Switches

Understanding Guest VLANs for 802.1X on EX Series Switches

Understanding 802.1X and RADIUS Accounting on EX Series Switches

Understanding 802.1X and LLDP and LLDP-MED on EX Series Switches

Understanding 802.1X and VoIP on EX Series Switches

Understanding 802.1X and VSAs on EX Series Switches

Understanding Dynamic VLANs for 802.1X on EX Series Switches

Understanding Server Fail Fallback and Authentication on EX Series Switches

Authentication Process Flow for EX Series Switches

Understanding Authentication Session Timeout

Understanding NetBIOS Snooping

Configuration Examples

Example: Connecting a RADIUS Server for 802.1X to an EX Series Switch

Example: Setting Up 802.1X in Conference Rooms to Provide Internet Access to Corporate Visitors on an EX Series Switch

Example: Setting Up 802.1X for Single Supplicant or Multiple Supplicant Configurations on an EX Series Switch

Example: Setting Up VoIP with 802.1X and LLDP-MED on an EX Series Switch

Example: Configuring VoIP on an EX Series Switch Without Including LLDP-MED Support

Example: Configuring VoIP on an EX Series Switch Without Including 802.1X Authentication

Example: Configuring Static MAC Bypass of Authentication on an EX Series Switch

Example: Configuring 802.1X Authentication Options When the RADIUS Server is Unavailable to an EX Series Switch

Example: Configuring MAC RADIUS Authentication on an EX Series Switch

Example: Applying a Firewall Filter to 802.1X-Authenticated Supplicants Using RADIUS Server Attributes on an EX Series Switch

Example: Applying Firewall Filters to Multiple Supplicants on Interfaces Enabled for 802.1X or MAC RADIUS Authentication

Example: Setting Up Captive Portal Authentication on an EX Series Switch

Configuration Tasks

Configuring 802.1X Interface Settings (CLI Procedure)

Configuring 802.1X Authentication (J-Web Procedure)

Configuring 802.1X RADIUS Accounting (CLI Procedure)

Filtering 802.1X Supplicants Using RADIUS Server Attributes

Configuring LLDP (CLI Procedure)

Configuring LLDP (J-Web Procedure)

Configuring LLDP-MED (CLI Procedure)

VSA Match Conditions and Actions

Configuring Server Fail Fallback (CLI Procedure)

Configuring MAC RADIUS Authentication (CLI Procedure)

Configuring Static MAC Bypass of Authentication (CLI Procedure)

Specifying RADIUS Server Connections on an EX Series Switch (CLI Procedure)

Configuring Captive Portal Authentication (CLI Procedure)

Designing a Captive Portal Authentication Login Page on an EX Series Switch

Controlling Authentication Session Timeouts (CLI Procedure)

Configuring NetBIOS Snooping (CLI Procedure)

Configuration Statements

[edit access] Configuration Statement Hierarchy

[edit ethernet-switching-options] Configuration Statement Hierarchy

[edit protocols] Configuration Statement Hierarchy

access

accounting (Access Profile)

accounting

accounting (EX Series switches only)

accounting-port

accounting-server

accounting-session-id-format

accounting-stop-on-access-deny

accounting-stop-on-access-deny (EX Series switches only)

accounting-stop-on-failure

accounting-stop-on-failure (EX Series switches only)

address

address-pool

address-range

advertisement-interval

attributes

authentication-order

authentication-order (EX Series switches only)

authentication-profile-name

authentication-server

authentication-whitelist

authenticator

ca-type

ca-value

captive-portal

civic-based

country-code

custom-options

destination

disable (for 802.1X)

disable (for LLDP)

disable (for LLDP-MED)

dot1x

elin

ethernet-port-type-virtual

ethernet-switching-options

events

exclude

fast-start

forwarding-class

guest-vlan

hold-multiplier

ignore

immediate-update

interface (for authentication)

interface (Captive Portal)

interface (for LLDP)

interface (for LLDP-MED)

interface (for static)

interface (for VoIP)

interface-description-format

lldp

lldp-configuration-notification-interval

lldp-med

location

mac-radius

management-address

maximum-requests

nas-identifier

nas-port-extended-format

netbios-snooping

no-mac-table-binding

no-reauthentication

options

order

order (EX Series switches only)

port

port (RADIUS Server)

port (TACACS+ Server)

profile

ptopo-configuration-maximum-hold-time

ptopo-configuration-trap-interval

quiet-period

quiet-period (Captive Portal)

radius (Access Profile)

radius

radius (EX Series switches only)

radius-server

reauthentication

retries

retries (Captive Portal)

retry

retry

revert-interval

routing-instance

secret

secret

secure-authentication

server (RADIUS Accounting)

server (TACACS+ Accounting)

server-fail

server-reject-vlan

server-timeout

server-timeout (Captive Portal)

session-expiry

single-connection

source-address

source-address (NTP, RADIUS, System Logging, or TACACS+)

static

statistics

supplicant

supplicant-timeout

tacplus

timeout

timeout (RADIUS)

traceoptions (for 802.1X)

traceoptions (for LLDP)

transmit-delay

transmit-period

update-interval

vlan-assignment

vlan-nas-port-stacked-format

voip

what

Routine Monitoring

Monitoring 802.1X Authentication

Verifying 802.1X Authentication

Operational Commands

clear captive-portal

clear dot1x

clear lldp neighbors

clear lldp statistics

show captive-portal authentication-failed-users

show captive-portal firewall

show captive-portal interface

show dot1x

show dot1x authentication-failed-users

show dot1x firewall

show dot1x static-mac-address

show ethernet-switching interfaces

show lldp

show lldp local-information

show lldp neighbors

show lldp remote-global-statistics

show lldp statistics

show network-access aaa statistics accounting

show network-access aaa statistics authentication

show network-access aaa statistics dynamic-requests

Knowledge Base

http://kb.juniper.net/

 

Downloads

  • Download this page: Access Control on EX Series Switches PDF Document
  • Complete Software Guide PDF Document
 
 
  • About Juniper
  • Investor Relations
  • Press Releases
  • Newsletters
  • Juniper Offices
  • Green Networking
  • Resources
  • How to Buy
  • Partner Locator
  • Image Library
  • Visio Templates
  • Security Center
  • Community
  • Forums
  • Blogs
  • Junos Central
  • Social Media
  • Developers
  • Support
  • Technical Documentation
  • Knowledge Base (KB)
  • Software Downloads
  • Product Licensing
  • Contact Support
Site Map / RSS Feeds / Careers / Accessibility / Feedback / Privacy & Policy / Legal Notices
Copyright© 1999-2013 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out