Chapter 7
| Authentication Commands
802.1X Port Authentication
– 213 –
◆
Authenticator Parameters
– Shows whether or not EAPOL pass-through is
enabled (
page 202
).
◆
Supplicant Parameters
– Shows the supplicant user name used when the switch
responds to an MD5 challenge from an authenticator (
page 209
).
◆
802.1X Port Summary
– Displays the port access control parameters for each
interface that has enabled 802.1X, including the following items:
■
Type – Administrative state for port access control (Enabled, Authenticator,
or Supplicant).
■
Operation Mode–Allows single or multiple hosts (
page 204
).
■
Control Mode – Dot1x port control mode (
page 205
).
■
Authorized– Authorization status (yes or n/a - not authorized).
◆
802.1X Port Details
– Displays the port access control parameters for each
interface, including the following items:
■
Reauthentication – Periodic re-authentication (
page 205
).
■
Reauth Period – Time after which a connected client must be re-
authenticated (
page 206
).
■
Quiet Period – Time a port waits after Max Request Count is exceeded
before attempting to acquire a new client (
page 206
).
■
TX Period – Time a port waits during authentication session before re-
transmitting EAP packet (
page 208
).
■
Supplicant Timeout – Supplicant timeout.
■
Server Timeout – Server timeout. A RADIUS server must be set before the
correct operational value of 10 seconds will be displayed in this field.
■
Reauth Max Retries – Maximum number of reauthentication attempts.
■
Max Request – Maximum number of times a port will retransmit an EAP
request/identity packet to the client before it times out the authentication
session (
page 203
).
■
Operation Mode– Shows if single or multiple hosts (clients) can connect to
an 802.1X-authorized port.
■
Port Control–Shows the dot1x mode on a port as auto, force-authorized, or
force-unauthorized (
page 205
).
■
Intrusion Action– Shows the port response to intrusion when
authentication fails (
page 203
).
■
Supplicant– MAC address of authorized client.
◆
Authenticator PAE State Machine
■
State – Current state (including initialize, disconnected, connecting,
authenticating, authenticated, aborting, held, force_authorized,
force_unauthorized).
■
Reauth Count– Number of times connecting state is re-entered.
■
Current Identifier– The integer (0-255) used by the Authenticator to identify
the current authentication session.
Summary of Contents for EX-3524
Page 2: ......
Page 28: ...Figures 28 ...
Page 34: ...Section I Getting Started 34 ...
Page 58: ...Chapter 1 Initial Switch Configuration Setting the System Clock 58 ...
Page 72: ...Chapter 2 Using the Command Line Interface CLI Command Groups 72 ...
Page 156: ...Chapter 5 SNMP Commands Notification Log Commands 156 ...
Page 164: ...Chapter 6 Remote Monitoring Commands 164 ...
Page 218: ...Chapter 7 Authentication Commands Management IP Filter 218 ...
Page 268: ...Chapter 8 General Security Measures Port based Traffic Segmentation 268 ...
Page 292: ...Chapter 9 Access Control Lists ACL Information 292 ...
Page 312: ...Chapter 10 Interface Commands Power Savings 312 ...
Page 324: ...Chapter 11 Link Aggregation Commands Trunk Status Display Commands 324 ...
Page 366: ...Chapter 15 Address Table Commands 366 ...
Page 428: ...Chapter 17 VLAN Commands Configuring Voice VLANs 428 ...
Page 572: ...Chapter 25 IP Interface Commands IPv6 Interface 572 ...
Page 578: ...Section I Appendices 578 ...