Download the PDF 
Authentication Status
Introduction
This is what is in the 31.4 SRD, but not in 33.0 SRD.
The UNI status was modified as of the 31.4.0 AR version of PanoramaPON to retrieve IP address, MAC, and authentication status for a single view of the status. There is a performance trade-off, especially if there are a high number of enabled UNIs. We have made this screen configurable as some customers feel the extra wait time is worth it. As of the 31.4.0.AS version of PanoramaPON this feature has been turned off by default.
Document Number
ENG-
Applies To
This Application Note applies to Panorama PON EMS version 33.0 SRD and above.
Solution
A procedure to describe the steps to re-enable the authentication status.
Note: the display will show Unauthorized if the EMS property is not enabled.
Enable Port Authentication
 |
Note: This feature is for Administrative usage only. |
Optical LAN OLTs support 802.1x port-based access control via a Remote Access Dial-In User Service (RADIUS) server in the management network. This allows the network provider to authenticate the customer premises equipment (CPE) on a subscriber port before allowing traffic between the subscriber and the network.
In addition, several Dynamic Authorization Client IP and hostnames representing DAC servers are allowed (4 DAC servers), in the Port Authentication configuration dialog if the Change of Authorization (CoA) option is utilized in the Ethernet Port Profile using the RADIUS tab.
Use the following procedure to enable 802.1x port-based control for Ethernet Line Port(s), and to, alternately, specify RADIUS server(s):
- Logon to EMS and in the Network common tree, right-click on the target OLT and select Protocol on the dropdown list, then select Port Authentication on the dropdown list.

- In the Port Authentication dialog, check the Enable 802.1X port based access control check box to enable 802.1X processing for Ethernet Line ports on this OLT.
.png?Policy=eyJTdGF0ZW1lbnQiOlt7IlJlc291cmNlIjoiaHR0cHM6Ly9kemY4dnF2MjRlcWhnLmNsb3VkZnJvbnQubmV0L3VzZXJmaWxlcy80MTcwMy81NDk1Mi9ja2ZpbmRlci9pbWFnZXMvcXUvMjAyNi9pbWFnZSgzMykucG5nIiwiQ29uZGl0aW9uIjp7IkRhdGVMZXNzVGhhbiI6eyJBV1M6RXBvY2hUaW1lIjoxNzg1MTcyNzk4fX19XX0_&Signature=Mzoahd0op7Xdtga82gVOMh~M4HJN9quFvi6e6vrNlVu0J~2DjOnIwdi1UF5hYAe0JjF99kO7jh7fbzqAkf5PgQhgTfLdFsAGiK7kbVjoubNV7~FGzFryPhX~grsVacV-xvzUiprNMoZ-OS3Fbr6MQ2ZYyrhkILfot-xmH949MQqK1v3G6VFr87BaJHTmCeWCiEgODsLHZTqrWvHtjmtS2gqGb7CnOzqYh5XhqUtatP1CT8TlK6bCRQvar3Ua~uAsXr2f6M92bK20qlw7TUKiRHz9fyX5IrZcg0S~KWmBrJgl7bS7k2cinWmBX~RDK~EOxdStJTK09rjzl3JtCVSjCA__&Key-Pair-Id=K2TK3EG287XSFC)
- If RADIUS Authentication is also to be utilized, enter the RADIUS Server IP Address, Shared Key, and repeat the Shared Key in the Confirm Key field for up to four RADIUS servers. The Hide/Show button allows the user to view password text for the Shared key for both the RADIUS server and DAC server, as follows:
- The Shared Key is the shared secret key that both the OLT and the RADIUS server use for authentication.
- Shared Key entries don’t have to be unique.
- For each RADIUS server, the Shared Key and Confirm Key entries must match.
 |
Note: The Hide/Show key feature is only for Administrative usage only. |
- If the Dynamic Authorization Client Hostname and IP Address are utilized, enter the hostname or IP address in the field for each DAC server.
- For each DAC server, the Shared Key and Confirm Key entries must match. Up to 4 DAC servers are allowed.
- When finished, click the Apply button, then click the Close button.
- A confirmation message is displayed. Click the OK button to close.
Enable Authentication Status
- On the EMS Server, find LineConfigSS.properties file:
c:tellabspanoramaponbbmgrserverdataLineConfigSS folder
- Change the line that says "ShowUNIAuthStatus" to true
- Restart Panorama services via Windows Service manager (also known as services.msc)