Product and Software: This article applies to all Aruba platforms and ArubaOS 3.3.x and later.
When dot1x termination is disabled on the Aruba controller, EAP-PEAP and EAP-TLS tunnels terminate on the RADIUS server. The role of the Aruba controller is to authenticate only and to act as a passthrough to the dot1x traffic for most popular dot1x protocols, such as EAP-PEAP, EAP-TLS, and EAP-TTLS.
The information in the following table applies to Lenovo Access Connections 5.3 and earlier.
For dot1x machine authentication, the only supported EAP type is EAP-TLS, as per the table extracted from the Lenovo documentation.