Operation Manual – 802.1x-HABP-MAC AuthenticationH3C S5500-EI Series Ethernet Switches Chapter 2 EAD Fast Deployment Configuration2-1Chapter 2 EAD Fast Deployment ConfigurationWhen configuring EAD fast deployment, go to these sections for information you areinterested in:z EAD Fast Deployment Overviewz Configuring EAD Fast Deploymentz Displaying and Maintaining EAD Fast Deploymentz EAD Fast Deployment Configuration Examplez Troubleshooting EAD Fast Deployment2.1 EAD Fast Deployment OverviewAs an integrated security scheme, an endpoint admission defense (EAD) scheme canimprove the overall defense capability of a network. However, EAD deployment bringsmuch workload in actual applications. To solve this problem, you can use 802.1xfunctions to implement fast deployment of EAD scheme.To support the fast deployment of EAD schemes, 802.1x provides the following twomechanisms:1) Limit on accessible network resourcesBefore successful 802.1x authentication, a user can access only specific IP segments,each of which may have one or more servers. Users can download EAD client softwareor obtain dynamic IP address from the servers.2) IE URL redirectionBefore successful 802.1x authentication, a user using IE to access the network isautomatically redirected to a specified URL, for example, the EAD client softwaredownload page.The above two functions bring all 802.1x users accessing the network to a specifiedserver to download and install the EAD client software, thus easing the deployment ofan EAD scheme.2.2 Configuring EAD Fast Deployment2.2.1 Configuration Prerequisitesz Enable 802.1x globallyz Enable 802.1x on the specified port, and set the access control mode to auto.