Authentication Commands
4-137
4
802.1X Port Authentication
The switch supports IEEE 802.1X (dot1x) port-based access control that prevents
unauthorized access to the network by requiring users to first submit credentials for
authentication. Client authentication is controlled centrally by a RADIUS server
using EAP (Extensible Authentication Protocol).
dot1x system-auth-control
This command enables 802.1X port authentication globally on the switch. Use the
no
form to restore the default.
Syntax
[
no
]
dotx system-auth-control
Default Setting
Disabled
Command Mode
Global Configuration
Example
Table 4-39 802.1X Port Authentication
Command
Function
Mode
Page
dot1x system-auth-control Enables dot1x globally on the switch.
GC
dot1x default
Resets all dot1x parameters to their default values
GC
dot1x max-req
Sets the maximum number of times that the switch
retransmits an EAP request/identity packet to the client
before it times out the authentication session
IC
dot1x port-control
Sets dot1x mode for a port interface
IC
dot1x operation-mode
Allows single or multiple hosts on an dot1x port
IC
dot1x re-authenticate
Forces re-authentication on specific ports
PE
dot1x re-authentication
Enables re-authentication for all ports
IC
dot1x timeout quiet-period Sets the time that a switch port waits after the Max Request
Count has been exceeded before attempting to acquire a
new client
IC
dot1x timeout
re-authperiod
Sets the time period after which a connected client must be
re-authenticated
IC
dot1x timeout tx-period
Sets the time period during an authentication session that the
switch waits before re-transmitting an EAP packet
IC
dot1x intrusion-action
Sets the port response to intrusion when authentication fails IC
show dot1x
Shows all dot1x related information
PE
Console(config)#dot1x system-auth-control
Console(config)#
Summary of Contents for iES4024GP
Page 1: ...iES4028F 4028FP 4024GP ...
Page 4: ...iv This page is intentionally left blank ...
Page 10: ...x This page is intentionally left blank ...
Page 28: ...Contents xxviii This page is intentionally left blank ...
Page 32: ...Tables xxxii This page is intentionally left blank ...
Page 46: ...Introduction 1 10 1 This page is intentionally left blank ...
Page 336: ...Configuring the Switch 3 280 3 This page is intentionally left blank ...
Page 688: ...Command Line Interface 4 352 4 This page is intentionally left blank ...
Page 702: ...Glossary Glossary 8 This page is intentionally left blank ...
Page 710: ...Index 8 Index This page is intentionally left blank ...
Page 711: ...This page is intentionally left blank ...
Page 712: ...iES4028F 4028FP 4024GP ...