On Tue, Nov 09, 2004 at 01:39:33AM +0200, iVAN G wrote:
> > > How do u do LAN 802.1x + IP leasing (dhcp,radius,supplicant)
> > 
> >   802.1x via RADIUS.
> >   IP leasing via DHCP.
> > 
> >   They are configured completely independently.

> ]- yeah i know :") i was asking is there a way to combine both
> in a way so that the client (supplicant) can not forge the IP address

That will depend on the switch's ability to only allow traffic from
the authorized IP address through that port, and so it is independant
of RADIUS, unless the switch expects RADIUS to tell it to enable this
mode with a Vendor-Specific Attribute (VSA) of some kind.

I'm assuming from this that the 802.1x-supporting switch will be the
last switch before the 802.1x supplicant devices?

-- 
Paul "TBBle" Hampson, on an alternate email client.

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to