40-31
Catalyst 6500 Series Switch Software Configuration Guide—Release 8.7
OL-8978-04
Chapter 40 Configuring 802.1X Authentication
Configuring 802.1X Authentication on the Switch
QoS ACL mappings on input side:
ACL name Type Vlans
-------------------------------- ---- ---------------------------------
Dot1xDscp5Policy IP
ACL name Type Ports
-------------------------------- ---- ---------------------------------
Dot1xDscp5Policy IP
QoS ACL mappings on output side:
ACL name Type Vlans
-------------------------------- ---- ---------------------------------
Dot1xDscp5Policy IP
Console> (enable)
This example shows that the dynamic QoS policy information is displayed using the
show qos acl map
command. When you use the
runtime
keyword, you can see which dynamic policies have been applied
to which interfaces. The
config
keyword does not show the dynamic QoS policy mapping.
Console> (enable)
show qos acl map config Dot1xDscp5Policy
QoS ACL mappings on input side:
ACL name Type Vlans
-------------------------------- ---- ---------------------------------
Dot1xDscp5Policy IP
ACL name Type Ports
-------------------------------- ---- ---------------------------------
Dot1xDscp5Policy IP
QoS ACL mappings on output side:
ACL name Type Vlans
-------------------------------- ---- ---------------------------------
Dot1xDscp5Policy IP
Console> (enable)
show qos acl map runtime Dot1xDscp5Policy
QoS ACL mappings on input side:
ACL name Type Vlans
-------------------------------- ---- ---------------------------------
Dot1xDscp5Policy IP
ACL name Type Ports
-------------------------------- ---- ---------------------------------
Dot1xDscp5Policy IP 3/1
QoS ACL mappings on output side:
ACL name Type Vlans
-------------------------------- ---- ---------------------------------
Dot1xDscp5Policy IP
Console> (enable)
Configuring the RADIUS Server
Using Cisco Secure Access Control Server (ACS) 3.x or higher, you need to configure the QoS policy
name associated with an authenticated client. To configure the RADIUS server, perform these steps from
the ACS home page:
Step 1
Select
network configuration
.
Step 2
Click on the NAS IP on which to turn on the RADUIS IOS/PIX style of attributes.You will get the
Authenticate Using field.
Step 3
Select the
IOS/PIX
option and submit.
Step 4
Select
interface config
.
Step 5
Select
RADIUS (IOS/PIX)
.
Step 6
Check both boxes before the AV-pair option. The first option itself is AV-pair.