DES-3000 Series Layer 2 Switch CLI Reference Manual
25
802.1X C
OMMANDS
The DES-3000 switch series implements the server-side of the IEEE 802.1x Port-based and MAC-based Network Access Control.
This mechanism is intended to allow only authorized users, or other network devices, access to network resources by establishing
criteria for each port on the Switch that a user or network device must meet before allowing that port to forward or receive
frames.
Command Parameters
enable 802.1x
disable 802.1x
config 802.1x auth_mode
[port_based | mac_based]
show 802.1x auth_state
{ports <portlist>}
show 802.1x auth_configuration {ports
<portlist>}
config 802.1x capability
ports [<portlist> | all] [authenticator | none]
[<portlist> | all] [default | {direction [both | in] | port_control [force_unauth |
auto | force_auth] | quiet_period <sec 0-65535> | tx_period <sec 1-
65535> | supp_timeout <sec 1-65535> | server_timeout <sec 1-65535> |
max_req <value 1-10> | reauth_period <sec 1-65535> | enable_reauth
[enable | disable]}]
config 802.1x auth_protocol
[local | radius_eap]
config 802.1x init
[port_based ports [<portlist> | all] | mac_based [ports] [<portlist> | all]
{mac_address <macaddr>}]
config 802.1x reauth
[port_based ports [<portlist> | all] [<portlist> | all] {mac_address
<macaddr>}]
config radius add
<server_index 1-3> <server_ip> key <passwd 32> [default {auth_port
<udp_port_number 1-65535> | acct_port <udp_port_number 1-65535>}]
config radius delete
<server_index 1-3>
config radius
<server_index 1-3> <server_ip> key <passwd 32> [default | {auth_port
<udp_port_number 1-65535> | acct_port <udp_port_number 1-65535>]}
show radius
create 802.1x user
<username 15>
delete 802.1x user
<username 15>
{force_agree}
show 802.1x user
show acct_client
show auth_client
{ports [<portlist> | all]}
show auth_session_statistics
{ports [<portlist> | all]}
show auth_statistics
{ports [<portlist> | all]}
create 802.1x guest_vlan
<vlan_name 32>
[<portlist> | all] state [enable | disable]
delete 802.1x guest_vlan
<vlan_name 32>
config 802.1x auth_parameter ports
show auth_diagnostics
config 802.1x guest_vlan ports
show 802.1x guest_vlan
142