471
enabling 802.1X, 83
enabling client listening port (RADIUS), 32
general port mapping (ASPF), 347
host port mapping (ASPF), 347
macAddressElseUserLoginSecure configuration,
190
security configuration.
See
port security
setting authorization state (802.1X), 84
setting max number of concurrent users on a port
(802.1X), 85
setting max number of secure MAC addresses,
178
setting security mode (port security), 178
specifying mandatory port authentication domain
(802.1X), 89
specifying NAS ID profile for an interface, 131
specifying NAS-Port-Type for an interface, 131
userLoginWithOUI configuration, 185
port security
Auth-Fail VLAN support, 176
autoLearn configuration, 183
cannot change mode when user online
(troubleshooting), 194
cannot configure secure MAC addresses
(troubleshooting), 193
cannot set mode (troubleshooting), 193
configuration, 173, 183
configuring intrusion protection, 180
configuring NTK, 179
configuring secure MAC addresses, 181
configuring security features, 179
controlling MAC address learning, 175
displaying, 183
enabling, 177
enabling port security, 177
enabling trap, 181
features, 173
guest VLAN support, 176
ignoring RADIUS server authorization information,
182
intrusion protection, 173
IP source guard configuration, 407, 410
IPv4 source guard dynamic binding by DHCP
relay configuration, 413
IPv4 source guard dynamic binding by DHCP
snooping configuration, 411
macAddressElseUserLoginSecure configuration,
190
maintaining, 183
modes, 174
need to know (NTK), 173
performing 802.1X authentication, 175
performing combined MAC and 802.1X
authentication, 176
performing MAC authentication, 175
setting security mode, 178
static IPv4 source guard binding entry
configuration, 410
trap, 173
troubleshooting, 193
userLoginWithOUI configuration, 185
portal
access device, 116
authentication across VPNs, 125
authentication client, 116
authentication modes, 117
authentication/accounting server, 116
Auth-Fail VLAN, 119
authorized VLAN, 119
configuration, 115, 139
configuring a portal-free rule, 128
configuring online Layer 3 user detection, 135
configuring portal stateful failover, 132
configuring server detection function, 135