MES53xx, MES33xx, MES23xx Ethernet Switch Series
155
{gigabitethernet
gi_port
|
tengigabitethernet
te_port
|
fortygigabitethernet
fo_port
| oob}
te_port: (1..8/0/1..24);
fo_port: (1..8/0/1..4);
interface.
show dot1x users [username
username
]
username: (1..160)
characters
Show active authenticated 802.1X switch users.
show dot1x statistics interface
{gigabitethernet
gi_port
|
tengigabitethernet
te_port
|
fortygigabitethernet
fo_port
| oob}
gi_port: (1..8/0/1..48);
te_port: (1..8/0/1..24);
fo_port: (1..8/0/1..4);
Show 802.1X statistics for the selected interface.
Examples of command usage
Enable 802.1X authentication mode on the switch. Use RADIUS server for client authentication
checks on IEEE 802.1X interfaces. Use 802.1x authentication mode on Ethernet interface 8.
console#
configure
console(config)#
dot1x system-auth-control
console(config)#
aaa authentication dot1x default radius
console(config)#
interface tengigabitethernet
1/0/8
console(config-if)#
dot1x port-control auto
Show 802.1X state for the switch, for Ethernet interface 8.
console#
show dot1x interface tengigabitethernet
1/0/8
Authentication is enabled
Authenticating Servers: Radius
Unauthenticated VLANs:
Authentication failure traps are disabled
Authentication success traps are disabled
Authentication quiet traps are disabled
te1/0/8
Host mode: multi-host
Port Administrated Status: auto
Guest VLAN: disabled
Open access: disabled
Server timeout: 30 sec
Port Operational Status: unauthorized*
* Port is down or not present
Reauthentication is disabled
Reauthentication period: 3600 sec
Silence period: 0 sec
Quiet period: 60 sec
Interfaces 802.1X-Based Parameters
Tx period: 30 sec
Supplicant timeout: 30 sec
Max req: 2
Authentication success: 0
Authentication fails: 0
Table 5.168. Description of command results
Parameter
Description
Port
Port number.
Admin mode
802.1X authentication mode: Force-auth, Force-unauth, Auto.
Oper mode
Port operation mode: Authorized, Unauthorized, Down.
Reauth Control
Re-authentication control.
Reauth Period
The period between repeated authentication checks.
Username
802.1X username. If the port is authorized, the current user name is shown. If the
port is not authorized, the last successfully authorized user name for the port is
shown.