Unsolved
This post is more than 5 years old
3 Posts
0
37332
Using RADIUS for Port Based Authentication
Somebody correct me if I am wrong, but I beleive that I can use port-based authentication on my 5324 PowerConnect switches to make sure that a workstation connected to the port is part of my domain and isn't a rouge peice of equipment.
I am trying to use the 5324 in a Windows 2003 domain with Windows XP workstations. I have my Windows 2003 server using IAS (RADIUS).
I believe that I have my switches configured correctly, as well as my workstations. However, through about 3 days of trial-and-error and countless configuration schemes, I have failed to get this port-based authentication to work properly. I have used different IAS profiles (MD5, EAP, NAS-type ethernet, group authentication), configured the switch many different ways, the client in many different ways... and I give up.
Can anybody share their secrets on how they had this working in their enviorment? Is there any documentation on how this should be correctly applied to the switchs and how IAS should be configured?
Thanks for any help!
Message Edited by KROLRULES on 06-23-2005 06:24 AM
DELL-GregG
812 Posts
0
June 20th, 2005 10:00
DELL-GregG
812 Posts
0
June 20th, 2005 14:00
KROLRULES
3 Posts
0
June 20th, 2005 14:00
cvandusen
25 Posts
0
July 6th, 2005 16:00
Nuno Neves
5 Posts
0
April 22nd, 2006 01:00
I am trying to setup this with a 3448 and freeradius.
The problem is that the switch issues an EAP Identity Request to the clients, and, no matter which client I have, it always fails. But I only want to know the MAC address, so why ask the OS?
Anyway, it just keeps asking the client and never sends any request to the radius server.
How can I set this up with 3448?
Thank you,
Nuno Neves
5 Posts
0
April 24th, 2006 10:00
But the thing is that the switch does not even try to connect the RADIUS server...
I've put a tcpdump running, and no packet arrives at the RADIUS server
Anyway, I already got the switches ( :( ), so, I'll have to try a different approach to make them work.
Thank you,
KROLRULES
3 Posts
0
April 24th, 2006 10:00
Freeradius will not work with any Dell switch. Unfortuantly, Dell does not advertise this when they sell their switches. The only RADIUS brand that will work is Steel Belted Radius, and it will cost you anywhere from $2,000 to $10,000 to purchase.!
My advice, the HP Procurves support Freeradius and Microsoft IAS RADIUS brands right out of the box, along with about a dozen other brands of RAIDUS and Tactics. Although their switches are about twice as much as Dell, you get a better supported RADIUS configuration.
Telarian
1 Message
0
April 16th, 2010 12:00
uh, it's probably just because these posts are old, but when other people happen upon this...
You should know that Microsoft IAS works quite well with Dell switches.
Here is a guide: www.dell.com/downloads/global/products/pwcnt/en/3424_radius_auth_using_msserver.pdf