Default Setting
Feature
Disabled (force-authorized).
The port sends and receives normal traffic without
802.1x-based authentication of the client.
Per-port 802.1x enable state
Disabled.
AAA
•
None specified.
•
1645.
•
1646.
•
None specified.
RADIUS server
•
IP address
•
UDP authentication port
•
Default accounting port
•
Key
Single-host mode.
Host mode
Bidirectional control.
Control direction
Disabled.
Periodic re-authentication
3600 seconds.
Number of seconds between
re-authentication attempts
2 times (number of times that the switch restarts the
authentication process before the port changes to the
unauthorized state).
Re-authentication number
60 seconds (number of seconds that the switch remains in the
quiet state following a failed authentication exchange with the
client).
Quiet period
30 seconds (number of seconds that the switch should wait for
a response to an EAP request/identity frame from the client
before resending the request).
Retransmission time
2 times (number of times that the switch will send an
EAP-request/identity frame before restarting the authentication
process).
Maximum retransmission number
30 seconds (when relaying a request from the authentication
server to the client, the amount of time the switch waits for a
response before resending the request to the client.)
Client timeout period
Catalyst 2960-X Switch Security Configuration Guide, Cisco IOS Release 15.0(2)EX
OL-29048-01
297
Configuring IEEE 802.1x Port-Based Authentication
Default 802.1x Authentication Configuration