8-20
Cisco Catalyst Blade Switch 3020 for HP Software Configuration Guide
OL-8915-03
Chapter 8 Configuring IEEE 802.1x Port-Based Authentication
Configuring IEEE 802.1x Authentication
•
Changing the Switch-to-Client Retransmission Time, page 8-30
(optional)
•
Setting the Switch-to-Client Frame-Retransmission Number, page 8-31
(optional)
•
Setting the Re-Authentication Number, page 8-31
(optional)
•
Configuring IEEE 802.1x Accounting, page 8-32
(optional)
•
Configuring a Guest VLAN, page 8-33
(optional)
•
Configuring a Restricted VLAN, page 8-34
(optional)
•
Configuring the Inaccessible Authentication Bypass Feature, page 8-35
(optional)
•
Configuring IEEE 802.1x Authentication with WoL, page 8-38
(optional)
•
Configuring MAC Authentication Bypass, page 8-38
(optional)
•
Configuring NAC Layer 2 IEEE 802.1x Validation, page 8-39
(optional)
•
Configuring Web Authentication, page 8-40
(optional)
•
Disabling IEEE 802.1x Authentication on the Port, page 8-43
(optional)
•
Resetting the IEEE 802.1x Authentication Configuration to the Default Values, page 8-43
(optional)
Default IEEE 802.1x Authentication Configuration
Table 8-2
shows the default IEEE 802.1x authentication configuration.
Table 8-2
Default IEEE 802.1x Authentication Configuration
Feature
Default Setting
Switch IEEE 802.1x enable state
Disabled.
Per-port IEEE 802.1x enable state
Disabled (force-authorized).
The port sends and receives normal traffic without IEEE
802.1x-based authentication of the client.
AAA Disabled.
RADIUS server
•
IP address
•
UDP authentication port
•
Key
•
None specified.
•
1812.
•
None specified.
Host mode
Single-host mode.
Control direction
Bidirectional control.
Periodic re-authentication
Disabled.
Number of seconds between
re-authentication attempts
3600 seconds.
Re-authentication number
2 times (number of times that the switch restarts the
authentication process before the port changes to the
unauthorized state).
Quiet period
60 seconds (number of seconds that the switch remains in
the quiet state following a failed authentication exchange
with the client).