发明名称 Method for 802.1X authentication, access device and access control device
摘要 In a method for 802.1X authentication, used in a network which comprises an access device and an access control device, a WLAN security template and a 802.1X client template is enabled at the access device, a 802.1X client template is enabled at the access device, and a 802.1X device template is enabled at a tunnel port of the access control device. The access control device establishes a 802.1X authentication tunnel with the access device, receive a packet transmitted by a client at the access control device through the 802.1X authentication tunnel, authenticates the client after receiving the packet, and assists the access device through the 802.1X authentication tunnel to obtain a session key.
申请公布号 US9066231(B2) 申请公布日期 2015.06.23
申请号 US201113701491 申请日期 2011.06.02
申请人 HANGZHOU H3C TECHNOLOGIES CO., LTD. 发明人 Chai Yongfu;Xu Yonggang
分类号 H04L29/06;H04W12/06;H04W12/04;H04W84/12 主分类号 H04L29/06
代理机构 Hewlett-Packard Patent Department 代理人 Hewlett-Packard Patent Department
主权项 1. A method for 802.1X authentication, used in a network that comprises an access device and an access control device, wherein a Wireless Local Area Network (WLAN) security template is enabled at the access device, an 802.1X client template is enabled at the access device to perform functions of an 802.1X client, and an 802.1X device template is enabled at a tunnel port of the access control device to perform functions of an 802.1X device, the method comprising: establishing, by the access control device, an 802.1X authentication tunnel with an access device, receiving, by the access control device, an 802.1X protocol packet transmitted by a client at the access control device through the 802.1X authentication tunnel; authenticating, by the access control device, the client after receiving the packet; and assisting, by the access control device, the access device through the 802.1X authentication tunnel to obtain a session key, wherein the assisting, by the access control device, the access device through the 802.1X authentication tunnel to obtain the session key comprises: transmitting, by the access control device, a pairwise master key obtained from the authentication process to the access device through the 802.1X authentication tunnel, whereby the access device performs a key negotiation with the client by using the pairwise master key to obtain the session key; or performing, by the access control device, the key negotiation with the client via the access device through the 802.1X authentication tunnel by using the pairwise master key obtained from the authentication process, and transmitting the session key obtained from the key negotiation process to the access device through the 802.1X authentication tunnel.
地址 Zhejiang CN