49-60
Catalyst 4500 Series Switch, Cisco IOS Software Configuration Guide - Cisco IOS XE 3.9.xE and IOS 15.2(5)Ex
Chapter 49 Configuring 802.1X Port-Based Authentication
Configuring 802.1X Port-Based Authentication
This example shows how to enable the guest VLAN feature and to specify VLAN 5 as a guest VLAN:
Cisco IOS Release 12.2(50)SG and later
Switch#
configure terminal
Switch(config)#
dot1x guest-vlan supplicant
Switch(config)#
interface gigabitethernet5/9
Switch(config-if)#
switchport mode access
Switch(config-if)#
dot1x pae authenticator
Switch(config-if)#
authentication event no-response action authorize vlan 5
Switch(config-if)#
authentication port-control auto
Switch(config-if)#
end
Switch#
Cisco IOS Release 12.2(46)SG or earlier
Switch#
configure terminal
Switch(config)#
dot1x guest-vlan supplicant
Switch(config)#
interface gigabitethernet5/9
Switch(config-if)#
switchport mode access
Switch(config-if)#
dot1x pae authenticator
Switch(config-if)#
dot1x guest-vlan 5
Switch(config-if)#
dot1x port-control auto
Switch(config-if)#
end
Switch#
Configuring 802.1X with MAC Authentication Bypass
To enable MAC Authentication Bypass (MAB), perform this task:
Step 7
Cisco IOS Release 12.2(50)SG and later
Switch(config-if)#
authentication
port-control auto
Cisco IOS Release 12.2(46)SG or earlier
releases
Switch(config-if)#
dot1x
port-control auto
Enables 802.1X authentication on the interface.
Step 8
Switch(config-if)#
end
Returns to privileged EXEC mode.
Step 9
Switch#
show dot1x interface
interface-id
Verifies your entries.
Step 10
Switch#
copy running-config
startup-config
(Optional) Saves your entries in the configuration file.
Command
Purpose
Step 1
Switch#
configure terminal
Enters global configuration mode.
Step 2
Switch(config)#
interface
interface-id
Specifies the port to be configured, and enters interface configuration
mode.
Step 3
Switch(config-if)#
switchport mode
access
or
Switch(config-if)#
switchport mode
private-vlan host
Specifies a nontrunking, nontagged single VLAN Layer 2 interface.
Specifies that the ports with a valid PVLAN trunk association become active
host PVLAN trunk ports.
Command
Purpose
Содержание Catalyst 4500 Series
Страница 2: ......
Страница 4: ......
Страница 2086: ...Index IN 46 Software Configuration Guide Release IOS XE 3 9 0E and IOS 15 2 5 E ...