Chapter 8
| General Security Measures
Network Access (MAC Address Authentication)
– 225 –
Command Mode
Global Configuration
Command Usage
◆
The reauthentication time is a global setting and applies to all ports.
◆
When the reauthentication time expires for a secure MAC address it is
reauthenticated with the RADIUS server. During the reauthentication process
traffic through the port remains unaffected.
Example
Console(config)#mac-authentication reauth-time 300
Console(config)#
network-access
dynamic-qos
Use this command to enable the dynamic QoS feature for an authenticated port.
Use the
no
form to restore the default.
Syntax
[
no
]
network-access dynamic-qos
Default Setting
Disabled
Command Mode
Interface Configuration
Command Usage
◆
The RADIUS server may optionally return dynamic QoS assignments to be
applied to a switch port for an authenticated user. The “Filter-ID” attribute
(attribute 11) can be configured on the RADIUS server to pass the following
QoS information:
Table 48: Dynamic QoS Profiles
Profile
Attribute Syntax
Example
DiffServ
service-policy-in
=
policy-map-name
service-policy-in=p1
Rate Limit
rate-limit-input
=
rate (Kbps)
rate-limit-input=100 (Kbps)
rate-limit-output
=
rate (Kbps)
rate-limit-output=200 (Kbps)
802.1p
switchport-priority-default
=
value
switchport-priority-default=2
IP ACL
ip-access-group-in
=
ip-acl-name
ip-access-group-in=ipv4acl
IPv6 ACL
ipv6-access-group-in
=
ipv6-acl-name
ipv6-access-group-in=ipv6acl
MAC ACL
mac-access-group-in
=
mac-acl-name
mac-access-group-in=macAcl
Summary of Contents for EX-3524
Page 2: ......
Page 28: ...Figures 28 ...
Page 34: ...Section I Getting Started 34 ...
Page 58: ...Chapter 1 Initial Switch Configuration Setting the System Clock 58 ...
Page 72: ...Chapter 2 Using the Command Line Interface CLI Command Groups 72 ...
Page 156: ...Chapter 5 SNMP Commands Notification Log Commands 156 ...
Page 164: ...Chapter 6 Remote Monitoring Commands 164 ...
Page 218: ...Chapter 7 Authentication Commands Management IP Filter 218 ...
Page 268: ...Chapter 8 General Security Measures Port based Traffic Segmentation 268 ...
Page 292: ...Chapter 9 Access Control Lists ACL Information 292 ...
Page 312: ...Chapter 10 Interface Commands Power Savings 312 ...
Page 324: ...Chapter 11 Link Aggregation Commands Trunk Status Display Commands 324 ...
Page 366: ...Chapter 15 Address Table Commands 366 ...
Page 428: ...Chapter 17 VLAN Commands Configuring Voice VLANs 428 ...
Page 572: ...Chapter 25 IP Interface Commands IPv6 Interface 572 ...
Page 578: ...Section I Appendices 578 ...