Function
Correct Role
Is the Authentication Source
Backend Services
Is responsible for granting or denying access
Authentication Server
Software that enables use of 802.1X network authentication protocol
Supplicant
The device that controls initial network access
Authenticator
IEEE 802.1X separates network-access authentication into distinct functional roles. The supplicant is the client-side software participating in 802.1X authentication. It runs on the endpoint and exchanges EAPOL messages with the network authenticator when requesting access.
The authenticator is the network-access device controlling the port or wireless connection. In an Aruba deployment, this can be an Aruba switch, AP, or gateway/controller. It operates as the gatekeeper and controls the client ' s initial access while relaying authentication information between the supplicant and authentication server. Aruba explicitly describes the authenticator as the component that permits or denies network access at the enforcement point. Aruba Networking
The Authentication Server , typically HPE Aruba Networking ClearPass Policy Manager , processes authentication requests and ultimately returns an accept or reject decision to the authenticator. Aruba Networking
Finally, Backend Services supply the authentication source . Examples include Microsoft Active Directory, LDAP, SQL databases, or other identity repositories. Aruba defines an authentication source as the identity store against which users or devices are authenticated. Aruba Networking
Study Guide Topics: 802.1X Architecture, Supplicant, Authenticator, Authentication Server, ClearPass Policy Manager, Authentication Sources, EAP/EAPOL, RADIUS.