802.1x Commands
321
FILE LOCATION: C:\Users\gina\Desktop\Checkout_new\CLI Folders\Dell Contax
CLI\files\802.1X.fm
D E L L CO N F I D E N T I A L – P R E L I MI N A RY 5/ 1 5 /1 2 - F O R PR O O F O N LY
Radius attributes are supported only in the multiple sessions mode (multiple
hosts with authentication)
When Radius attributes are enabled and the Radius Accept message does not
contain the supplicant’s VLAN as an attribute, then the supplicant is
rejected.
Packets to the supplicant are sent untagged.
After successful authentication the port remains member in the
unauthenticated VLANs and in the Guest VLAN. Other static VLAN
configuration is not applied on the port. If the supplicant VLAN does not
exist on the switch, the supplicant is rejected.
Example
console(config)# interface gi1/0/1
console(config-if)#
dot1x radius-attributes vlan
dot1x radius-attributes filter-id
Use the
dot1x radius-attributes filter-id
Interface Configuration mode
command to enable user-based ACL/Qos-Policy assignment. Use the
no
form
of this command to disable user-based ACL/Qos-Policy assignment.
Syntax
dot1x radius-attributes filter-id
no dot1x radius-attributes filter-id
Parameters
This command has no arguments or keywords.
Default
Disabled
Command Mode
Interface Configuration (Ethernet) mode