General Security Measures
3-117
3
Web
– Click Security, Network Access, Configuration.
Figure 3-69 Network Access Configuration
CLI
– This example sets and displays the reauthentication time.
Configures MAC authentication on switch ports, including setting the maximum MAC
count, applying a MAC address filter, and enabling dynamic VLAN or dynamic QoS
assignments.
Command Attributes
•
Mode
– Enables MAC authentication on a port. (Default: None)
•
Maximum MAC Count
– Sets the maximum number of MAC addresses that can
be authenticated on a port. The maximum number of MAC addresses per port is
2048, and the maximum number of secure MAC addresses supported for the
switch system is 1024. When the limit is reached, all new MAC addresses are
treated as authentication failed. (Default: 2048; Range: 1 to 2048)
•
MAC Filter ID
– Allows a MAC Filter to be assigned to the port. MAC addresses or
MAC address ranges present in a selected MAC Filter are exempt from
authentication on the specified port (as described under MAC Filter Configuration
on page 3-121). (Range: 1-64; Default: None)
•
Guest VLAN
– Specifies the VLAN to be assigned to the port when MAC
Authentication or 802.1X Authentication fails. (Default: Disabled; Range: 1 to 4092)
The VLAN must already be created and active (see Creating VLANs on page
3-222). Also, when used with 802.1X authentication, intrusion action must be set
for “Guest VLAN” (see Configuring Port Settings for 802.1X on page 3-101).
Summary of Contents for 6152PL2 FICHE
Page 2: ......
Page 6: ...vi ...
Page 8: ...viii ...
Page 32: ...Tables xxxii ...
Page 38: ...Figures xxxviii ...
Page 56: ...Initial Configuration 2 10 2 ...
Page 378: ...Configuring the Switch 3 322 3 ...
Page 817: ......