IP assignment and authenticated port

Jan Ceuleers jan.ceuleers
Tue Feb 3 10:52:00 PST 2015


On 03/02/15 19:40, Sarah Thomas wrote:
>   Final understanding - DHCP broadcast messages are not accepted by the
> switch till the port is authenticated. Only after the port is
> authenticated, broadcast message will be accepted , for which DHCP reply
> message holding the IP address for the client will come.  Please correct
> the understanding if its wrong.

Correct, but it can be generalised even further. The switch port should
reject /all/ traffic from/to a port other than 802.1x until that port is
authenticated.




More information about the Hostap mailing list