<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Mac-based authentication in Switches, Hubs, and Modems</title>
    <link>https://community.hpe.com/t5/switches-hubs-and-modems/mac-based-authentication/m-p/3964542#M10728</link>
    <description>&lt;!--!*#--&gt;I am trying to set up Mac-based authentication on a procurve 2626, authenticating to a Steel-belted Radius server.  However I fail to get authenticated, I have created a user on the radius box with a username on &amp;lt; mymacaddress &amp;gt; multi dash , username &lt;MYMACADDRESS&gt; mutil dash&lt;BR /&gt;&lt;BR /&gt;Can anyone piont me in the write direction&lt;BR /&gt;&lt;BR /&gt;Thanks&lt;BR /&gt;&lt;BR /&gt;I have the following config on my switch &lt;BR /&gt;&lt;BR /&gt; /sw/code/build/fish(ts_08_5)&lt;BR /&gt; May  5 2006 12:22:57&lt;BR /&gt; H.08.98&lt;BR /&gt; 268&lt;BR /&gt;&lt;BR /&gt;Config &lt;BR /&gt;&lt;BR /&gt;   exit&lt;BR /&gt;radius-server host 172.16.2.14 key secretKey&lt;BR /&gt;aaa port-access mac-based 1-4&lt;BR /&gt;aaa port-access mac-based addr-format multi-dash&lt;BR /&gt;password manager&lt;BR /&gt;&lt;BR /&gt;I have eap method as MD5 chanllenge on the radius box&lt;BR /&gt;&lt;/MYMACADDRESS&gt;</description>
    <pubDate>Mon, 19 Mar 2007 11:33:45 GMT</pubDate>
    <dc:creator>Kevin Stanton</dc:creator>
    <dc:date>2007-03-19T11:33:45Z</dc:date>
    <item>
      <title>Mac-based authentication</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/mac-based-authentication/m-p/3964542#M10728</link>
      <description>&lt;!--!*#--&gt;I am trying to set up Mac-based authentication on a procurve 2626, authenticating to a Steel-belted Radius server.  However I fail to get authenticated, I have created a user on the radius box with a username on &amp;lt; mymacaddress &amp;gt; multi dash , username &lt;MYMACADDRESS&gt; mutil dash&lt;BR /&gt;&lt;BR /&gt;Can anyone piont me in the write direction&lt;BR /&gt;&lt;BR /&gt;Thanks&lt;BR /&gt;&lt;BR /&gt;I have the following config on my switch &lt;BR /&gt;&lt;BR /&gt; /sw/code/build/fish(ts_08_5)&lt;BR /&gt; May  5 2006 12:22:57&lt;BR /&gt; H.08.98&lt;BR /&gt; 268&lt;BR /&gt;&lt;BR /&gt;Config &lt;BR /&gt;&lt;BR /&gt;   exit&lt;BR /&gt;radius-server host 172.16.2.14 key secretKey&lt;BR /&gt;aaa port-access mac-based 1-4&lt;BR /&gt;aaa port-access mac-based addr-format multi-dash&lt;BR /&gt;password manager&lt;BR /&gt;&lt;BR /&gt;I have eap method as MD5 chanllenge on the radius box&lt;BR /&gt;&lt;/MYMACADDRESS&gt;</description>
      <pubDate>Mon, 19 Mar 2007 11:33:45 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/mac-based-authentication/m-p/3964542#M10728</guid>
      <dc:creator>Kevin Stanton</dc:creator>
      <dc:date>2007-03-19T11:33:45Z</dc:date>
    </item>
    <item>
      <title>Re: Mac-based authentication</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/mac-based-authentication/m-p/3964543#M10729</link>
      <description>Hi,&lt;BR /&gt;Maybe you want to add &lt;BR /&gt;&lt;BR /&gt;aaa authentication port-access eap-radius&lt;BR /&gt;&lt;BR /&gt;I got mine working using IAS.</description>
      <pubDate>Tue, 20 Mar 2007 03:04:04 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/mac-based-authentication/m-p/3964543#M10729</guid>
      <dc:creator>Jaguar</dc:creator>
      <dc:date>2007-03-20T03:04:04Z</dc:date>
    </item>
    <item>
      <title>Re: Mac-based authentication</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/mac-based-authentication/m-p/3964544#M10730</link>
      <description>I added aaa authentication port-access eap-radius still no luck, I know I am missing something very simple.</description>
      <pubDate>Tue, 20 Mar 2007 03:56:21 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/mac-based-authentication/m-p/3964544#M10730</guid>
      <dc:creator>Kevin Stanton</dc:creator>
      <dc:date>2007-03-20T03:56:21Z</dc:date>
    </item>
    <item>
      <title>Re: Mac-based authentication</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/mac-based-authentication/m-p/3964545#M10731</link>
      <description>&lt;!--!*#--&gt;I get as far as the Radius box however the radius and the switch log me as a failed authentication.&lt;BR /&gt;&lt;BR /&gt;I have upgraded the code to version 10.31 made no differance.</description>
      <pubDate>Tue, 20 Mar 2007 04:00:57 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/mac-based-authentication/m-p/3964545#M10731</guid>
      <dc:creator>Kevin Stanton</dc:creator>
      <dc:date>2007-03-20T04:00:57Z</dc:date>
    </item>
    <item>
      <title>Re: Mac-based authentication</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/mac-based-authentication/m-p/3964546#M10732</link>
      <description>Hi&lt;BR /&gt;&lt;BR /&gt;I suggest you have a look on the Funk event log screen after any unsuccessful login, and try to trace it.&lt;BR /&gt;&lt;BR /&gt;Good Luck !!!</description>
      <pubDate>Tue, 20 Mar 2007 10:44:21 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/mac-based-authentication/m-p/3964546#M10732</guid>
      <dc:creator>Mohieddin Kharnoub</dc:creator>
      <dc:date>2007-03-20T10:44:21Z</dc:date>
    </item>
    <item>
      <title>Re: Mac-based authentication</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/mac-based-authentication/m-p/3964547#M10733</link>
      <description>Gave up on Steel belted radius went back to IAS&lt;BR /&gt;&lt;BR /&gt;Added user to the domain Mac-address username and password&lt;BR /&gt;Made a member of groups &lt;DOMAIN user=""&gt; and &lt;RAS and="" ias="" servers=""&gt;&lt;BR /&gt;&lt;BR /&gt;Dial in allow access&lt;BR /&gt;&lt;BR /&gt;Account Password settings ; user cannot change password, never expires, store using reversible ( this can take time to replicate, you also need to reset the password if you have just ticked the box as the password is not changed automatically)&lt;BR /&gt;&lt;BR /&gt;IAS&lt;BR /&gt;&lt;BR /&gt;Policy properties : add your windows group I used domain users&lt;BR /&gt;&lt;BR /&gt;Edit profile&lt;BR /&gt;&lt;BR /&gt;Authentication  : encrypted authentication (chap)&lt;BR /&gt;&lt;BR /&gt;Advanced : &lt;BR /&gt;&lt;BR /&gt;I added&lt;BR /&gt;&lt;BR /&gt;framed-protocol PPP&lt;BR /&gt;service-type framed&lt;BR /&gt;tunnel-medium-type 802&lt;BR /&gt;You can put you Vlan info in here too&lt;BR /&gt;&lt;BR /&gt;IASparse tool kool for looking at the log files&lt;BR /&gt;&lt;BR /&gt;I am up and running thanks for the help&lt;BR /&gt;&lt;BR /&gt;I found the following Doc very useful&lt;BR /&gt;&lt;A href="http://www.foundrynet.com/pdf/wp-deploying-mac-with-ias.pdf" target="_blank"&gt;http://www.foundrynet.com/pdf/wp-deploying-mac-with-ias.pdf&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;switch config&lt;BR /&gt;&lt;BR /&gt;aaa accounting network radius&lt;BR /&gt;radius-server host 172.28.9.69 key *****&lt;BR /&gt;aaa port-access mac-based 1-4&lt;BR /&gt;aaa port-access mac-based addr-format multi-dash&lt;/RAS&gt;&lt;/DOMAIN&gt;</description>
      <pubDate>Wed, 21 Mar 2007 07:35:30 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/mac-based-authentication/m-p/3964547#M10733</guid>
      <dc:creator>Kevin Stanton</dc:creator>
      <dc:date>2007-03-21T07:35:30Z</dc:date>
    </item>
  </channel>
</rss>

