802.1x User Authentication
A simplified example of a successful 802.1x authentication process with RADIUS is as follows:
- A friend of yours (Client) knocks at the door of your house and asks if he can come in. (Request for Access)
- A doorman (Authenticator) comes to the door and asks for your friends identity in the form of a picture ID that has his name and password. (Identity Request, Challenge)
- The doorman takes the ID to you, the owner of the house (Authentication server) and asks if the visitor is someone you know. (Verification)
- You, the Owner know this person which happens to be your friend, so you tell the doorman to let your friend in. The doorman returns and tells the visitor that he has been allowed into the house. (Access granted, port enabled)
A simplified example of an unsuccessful 802.1x authentication process with RADIUS is as follows:
- An Ex-Spouse (Client) knocks on the door of your house and asks if he/she can come in. (Request for Access)
- A doorman (Authenticator) comes to the door and asks for your Ex-Spouse’s identity in the form of a picture ID that has a name and password. (Identity Request, Challenge)
- The doorman takes the ID to you, the owner of the house (Authentication server) and asks if the visitor is someone you know. (Verification)
- You, the Owner knows this person to be your Ex-Spouse, so you tell the doorman that he/she is not allowed in your house. The doorman returns and tells your Ex-Spouse that he/she has NOT been granted access into the house and politely asks him/her to leave. (Access Denied, port left in unauthorized state)
Next >> |