1-11
dot1x port-control
Syntax
dot1x
port-control
{
auto
|
authorized-force
|
unauthorized-force
}
[
interface interface-list
]
undo dot1x
port-control
[
interface interface-list
]
View
System view, Ethernet port view
Parameters
auto
: Specifies to operate in
auto
access control mode. When a port operates in this mode, all the
unauthenticated hosts connected to it are unauthorized. In this case, only EAPoL packets can be
exchanged between the switch and the hosts. And the hosts connected to the port are authorized to
access the network resources after the hosts pass the authentication. Normally, a port operates in this
mode.
authorized-force
: Specifies to operate in
authorized-force
access control mode. When a port
operates in this mode, all the hosts connected to it can access the network resources without being
authenticated.
unauthorized-force
: Specifies to operate in
unauthorized-force
access control mode. When a port
operates in this mode, the hosts connected to it cannot access the network resources.
interface-list
: Ethernet port list, in the form of
interface-list=
{
interface-type interface-number
[
to
interface-type interface-number
] } &<1-10>, in which
interface-type
specifies the type of an Ethernet
port and
interface-number
is the number of the port. The string “&<1-10>” means that up to 10 port lists
can be provided.
Description
Use the
dot1x
port-control
command to specify the access control mode for specified Ethernet ports.
Use the
undo dot1x
port-control
command to revert to the default access control mode.
The default access control mode is
auto
.
Use the
dot1x
port-control
command to configure the access control mode for specified
802.1x-enabled ports.
In system view:
z
If you do not provide the
interface-list
argument, these two commands apply to all the ports of the
switch.
z
If you specify the
interface-list
argument, these commands apply to the specified ports.
In Ethernet port view, the
interface-list
argument is not available and the commands apply to only the
current Ethernet port.
Related commands:
display dot1x
.
Examples
# Specify Ethernet 1/0/1 to operate in
unauthorized-force
access control mode.
<Sysname> system-view
System View: return to User View with Ctrl+Z.
[Sysname] dot1x port-control unauthorized-force interface Ethernet 1/0/1
Содержание 5500-EI PWR
Страница 43: ...2 6...
Страница 76: ...1 17...
Страница 228: ...ii stp transmit limit 1 44 vlan mapping modulo 1 45 vlan vpn tunnel 1 46...
Страница 477: ...5 24 Sysname vlan 2 Sysname vlan2 service type multicast...
Страница 503: ...2 3 System View return to User View with Ctrl Z Sysname dot1x url http 192 168 19 23...
Страница 519: ...iii...
Страница 597: ...2 2 security policy server 192 168 0 1 user name format without domain...
Страница 648: ...1 9 Examples Clear static ARP entries Sysname reset arp static...
Страница 663: ...4 3 Sysname resilient arp interface vlan interface 2...
Страница 767: ...1 28 From 12 00 Jan 1 2008 to 12 00 Jun 1 2008...
Страница 1111: ...ii xmodem get 3 18...
Страница 1314: ...A 44 Z...