Operation Manual – AAA & RADIUS & HWTACACS & EADH3C S7500 Series Ethernet Switches Chapter 2 EAD Configuration2-42.4 EAD Configuration ExampleI. Network requirementsAs shown in Figure 2-3:z A user's workstation is connected to Ethernet 2/0/1 of the switch.z The user's workstation adopts 802.1X client supporting EAD extended function.z By configuring the switch, user remote authentication is implemented throughRADIUS server and EAD control is achieved through security policy server.The following are the configuration tasks:z Connect the RADIUS authentication server to the switch. The IP address of theserver is 10.110.91.164, and the switch adopts port 1812 to communicate with theauthentication server.z Configure the authentication server type as extended.z Configure the encryption password for exchanging messages between the switchand RADIUS server as expert.z Configure the IP address of the security policy server as 10.110.91.166.II. Network diagramEthernet 2 /0/1Interneth Servers168erseUserSecurity Policy Servers10.110.91.166Virus Patc10.110.91.Authentication Serv10 .110 .91.164Figure 2-3 EAD configuration examplIII. Configuration procedure# Configure 802.1X on the switch. Refer to the 802.1X module in H3C S7500 SeriesEthernet Switches Operation Manual for detailed description.# Configure a domain. system-view[H3C] domain system[H3C-isp-system] quit