DGS-3000 Series Layer 2 Managed Gigabit Ethernet Switch CLI Reference Guide
527
Format
config mac_based_access_control ports [<portlist> | all] {state [enable | disable] | mode
[port_based | host_based] | aging_time [infinite | <min 1-1440>] | block_time <sec 0-300> |
max_users [<value 1-1000> | no_limit]}(1)
Parameters
<portlist>
- Enter the list of port used for this configuration here.
all
- Specify all existed ports of switch for configuring the MAC-based Access Control function
parameters.
state
- Specify whether the port’s MAC-based Access Control function is enabled or disabled.
enable
- Specify that the port's MAC-based Access Control states will be enabled.
disable
- Specify that the port's MAC-based Access Control states will be disabled.
mode
- Specify the MAC-based access control port mode used.
port_based
- Specify that the MAC-based access control port mode will be set to port-based.
host_based
- Specify that the MAC-based access control port mode will be set to host-based.
aging_time
- A time period during which an authenticated host will be kept in an authenticated
state. When the aging time has timed-out, the host will be moved back to unauthenticated
state.
infinite
- Specify that the authorized clients will not be aged out automatically.
<min 1-1440>
- Enter the aging time value here. This value must be between 1 and 1440
minutes.
block_time
- If a host fails to pass the authentication, the next authentication will not start within
the block time unless the user clears the entry state manually. If the block time is set to 0, it
means do not block the client that failed authentication.
<sec 0-300>
-Enter the block time value here. This value must be between 0 and 300
seconds.
max_users
- Specify maximum number of users per port.
<value 1-1000>
- Enter the maximum number of users per port here. This value must be
between 1 and 1000.
no_limit
- Specify to not limit the maximum number of users on the port. The default value is
128.
Restrictions
Only Administrators, Operators and Power-Users can issue this command.
Example
To configure an unlimited number of maximum users for MAC-based Access Control on ports 1 to
8:
DGS-3000-26TC:admin#config mac_based_access_control ports 1-8 max_users
no_limit
Command: config mac_based_access_control ports 1-8 max_users no_limit
Success.
DGS-3000-26TC:admin#
To configure the MAC-based Access Control timer parameters to have an infinite aging time and a
block time of 120 seconds on ports 1 to 8:
Summary of Contents for DGS-3000 series
Page 1: ......