
Chapter 7
| Authentication Commands
802.1X Port Authentication
– 250 –
Command Usage
This command displays the following information:
◆
Global 802.1X Parameters
– Shows whether or not 802.1X port authentication is
globally enabled on the switch (
).
◆
Authenticator Parameters
– Shows whether or not EAPOL pass-through is
◆
802.1X Port Summary
– Displays the port access control parameters for each
interface that has enabled 802.1X, including the following items:
■
Type – Administrative state for port access control (Enabled, Authenticator,
or Supplicant).
■
Operation Mode–Allows single or multiple hosts (
).
■
Control Mode – Dot1x port control mode (
■
Authorized– Authorization status (yes or n/a - not authorized).
◆
802.1X Port Details
– Displays the port access control parameters for each
interface, including the following items:
■
Reauthentication – Periodic re-authentication (
).
■
Reauth Period – Time after which a connected client must be re-
authenticated (
).
■
Quiet Period – Time a port waits after Max Request Count is exceeded
before attempting to acquire a new client (
).
■
TX Period – Time a port waits during authentication session before re-
transmitting EAP packet (
■
Supplicant Timeout – Supplicant timeout.
■
Server Timeout – Server timeout. A RADIUS server must be set before the
correct operational value of 10 seconds will be displayed in this field.
■
Reauth Max Retries – Maximum number of reauthentication attempts.
■
Max Request – Maximum number of times a port will retransmit an EAP
request/identity packet to the client before it times out the authentication
session (
■
Operation Mode– Shows if single or multiple hosts (clients) can connect to
an 802.1X-authorized port.
■
Port Control–Shows the dot1x mode on a port as auto, force-authorized, or
force-unauthorized (
).
■
Intrusion Action– Shows the port response to intrusion when
authentication fails (
).
■
Supplicant– MAC address of authorized client.
◆
Authenticator PAE State Machine
■
State – Current state (including initialize, disconnected, connecting,
authenticating, authenticated, aborting, held, force_authorized,
force_unauthorized).
■
Reauth Count– Number of times connecting state is re-entered.
■
Current Identifier– The integer (0-255) used by the Authenticator to identify
the current authentication session.
Summary of Contents for AS5700-54X
Page 42: ...Contents 42...
Page 44: ...Figures 44...
Page 52: ...Tables 52...
Page 54: ...Section I Getting Started 54...
Page 80: ...Chapter 1 Initial Switch Configuration Setting the System Clock 80...
Page 210: ...Chapter 6 Remote Monitoring Commands 210...
Page 358: ...Chapter 9 Access Control Lists ACL Information 358...
Page 418: ...Chapter 12 Port Mirroring Commands RSPAN Mirroring Commands 418...
Page 436: ...Chapter 15 UniDirectional Link Detection Commands 436...
Page 442: ...Chapter 16 Address Table Commands 442...
Page 506: ...Chapter 18 VLAN Commands Configuring VXLAN Tunneling 506...
Page 526: ...Chapter 19 Class of Service Commands Priority Commands Layer 3 and 4 526...
Page 544: ...Chapter 20 Quality of Service Commands 544...
Page 652: ...Chapter 22 Multicast Filtering Commands MLD Proxy Routing 652...
Page 680: ...Chapter 23 LLDP Commands 680...
Page 722: ...Chapter 24 CFM Commands Delay Measure Operations 722...
Page 732: ...Chapter 25 Domain Name Service Commands 732...
Page 790: ...Chapter 27 IP Interface Commands ND Snooping 790...
Page 1072: ...Section III Appendices 1072...
Page 1102: ...List of CLI Commands 1102...
Page 1115: ......
Page 1116: ...AS5700 54X AS6700 32X E032016 ST R02 149100000198A...