Purpose
Command or Action
Verifies your configuration.
show running-config interface interface-id
Example:
Switch#
show running-config interface
Step 13
gigabitethernet1/0/1
(Optional) Saves your entries in the configuration file.
copy running-config startup-config
Example:
Switch#
copy running-config startup-config
Step 14
You can also use an Auto Smartports user-defined macro
instead of the switch VSA to configure the authenticator
Configuring NEAT with Auto Smartports Macros
Step 15
switch. For more information, see the
Auto Smartports
Configuration Guide
for this release.
Configuring 802.1x Authentication with Downloadable ACLs and Redirect URLs
In addition to configuring 802.1x authentication on the switch, you need to configure the ACS. For more
information, see the
Configuration Guide for Cisco Secure ACS 4.2
:
http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_server_for_windows/4.2/configuration/guide/acs_config.pdf
You must configure a downloadable ACL on the ACS before downloading it to the switch.
Note
After authentication on the port, you can use the
show ip access-list
privileged EXEC command to display
the downloaded ACLs on the port.
Configuring Downloadable ACLs
The policies take effect after client authentication and the client IP address addition to the IP device tracking
table. The switch then applies the downloadable ACL to the port.
Beginning in privileged EXEC mode:
Catalyst 2960-X Switch Security Configuration Guide, Cisco IOS Release 15.0(2)EX
OL-29048-01
345
Configuring IEEE 802.1x Port-Based Authentication
Configuring 802.1x Authentication with Downloadable ACLs and Redirect URLs