110 | 802.1X
www.dell.com | support.dell.com
Figure 7-2. 802.1X Authentication Process
EAP over RADIUS
802.1X uses RADIUS to shuttle EAP packets between the authenticator and the authentication server, as
defined in RFC 3579. EAP messages are encapsulated in RADIUS packets as a type of attribute in Type,
Length, Value (TLV) format. The Type value for EAP messages is 79.
Figure 7-3. RADIUS Frame Format
Supplicant
Authenticator
Authenticati
on
Server
Request Identity
Response Identity
Access Request
Access Challenge
EAP over LAN (EAPOL)
EAP over RADIUS
EAP Request
EAP Reponse
Access Request
Access {Accept | Reject}
EAP {Sucess | Failure}
Code
Identifier
Length
Message-Authenticator
Attribute
EAP-Message Attribute
R
ange: 1-4
C
odes: 1: Access-Request
2: Access-Accept
3: Access-Reject
11: Access-Challenge
Type
(79)
Length
EAP-Method Data
(Supplicant Requested Credentials)