98 Device Settings on the IP Phone 1140E with SIP Firmware
802.1x (EAP) Port-based network access control
Extensible Authentication Protocol (EAP) supports multiple authentication
methods and represents a technology framework that facilitates the
adoption of Authentication, Authorization, and Accounting (AAA) schemes,
such as Remote Authentication Dial In User Service (RADIUS). RADIUS
is defined in RFC 2865. The IP Phone 1140E with SIP Firmware supports
only the MD5 authentication method.
802.1x defines the following three roles:
1. Supplicant—an IP Phone that requires access to the network to use
network services.
2. Authenticator—the network entry point to which the supplicant physically
connects (typically a Layer 2/3 switch). The authenticator acts as
the proxy between the supplicant and the authentication server. The
authenticator controls access to the network based on the authentication
status of the supplicant.
3. Authentication server—performs authentication of the supplicant.
Enable and disable Network-level authentication through the EAP
configuration menu.
Authorization
If 802.1x is configured and the IP Phone 1140E is physically connected to
the network, the IP Phone 1140E (supplicant) initiates 802.1x authentication
by contacting the Layer 2/3 switch (authenticator). The IP Phone 1140E
also initiates 802.1x authentication after the Ethernet connection (network
interface only) is restored following a network link failure.
However, if the IP Phone 1140E resets, it assumes the Layer 2 link has
remained in service and is authenticated.
The IP Phone 1140E fails to authorize if the DeviceID and the IP Phone
1140E passwords do not match the DeviceID and IP Phone 1140E
passwords provisioned on the RADIUS Server. The Layer 2 switch
(authenticator) locks out the IP Phone 1140E and network access is denied.
If this happens during reauthorization, all telephone services are lost. The
connected PC operates as normal.
Device ID
The Device ID is for use with the 802.1x (EAP) protocol. If the 802.1x (EAP)
is not used, then there is no prompt to enter the Device ID.
Password
The Password is for use with the 802.1x (EAP) protocol. If the 802.1x (EAP)
is not used, there is no prompt to enter the Password.
SIP Fir mware Release 2.0 for IP Phone 1140E Administration
NN43113-300 03.09 Standard
15 September 2008
Copyright © 2008, Nortel Networks
.
Comments to this Manuals