User Authentication
3-67
3
CLI
– This example enables 802.1x globally for the switch and shows the current
setting.
Configuring Port Settings for 802.1x
When 802.1x is enabled, you need to configure the parameters for the
authentication process that runs between the client and the switch (i.e.,
authenticator), as well as the client identity lookup process that runs between the
switch and authentication server. These parameters are described in this section.
Command Attributes
•
Status
– Indicates if authentication is enabled or disabled on the port.
•
Operation Mode
– Allows single or multiple hosts (clients) to connect to an
802.1X-authorized port. (Range: Single-Host, Multi-Host; Default: Single-Host)
•
Max Count
– The maximum number of hosts that can connect to a port when the
Multi-Host operation mode is selected. (Range: 1-20; Default: 5)
•
Mode
– Sets the authentication mode to one of the following options:
-
Auto
– Requires a dot1x-aware client to be authorized by the authentication
server. Clients that are not dot1x-aware will be denied access.
-
Force-Authorized
– Forces the port to grant access to all clients, either
dot1x-aware or otherwise. (This is the default setting.)
-
Force-Unauthorized
– Forces the port to deny access to all clients, either
dot1x-aware or otherwise.
•
Re-authentication
– Sets the client to be re-authenticated after the interval
specified by the Re-authentication Period. Re-authentication can be used to detect
if a new device is plugged into a switch port. (Default: Disabled)
•
Max Request
– Sets the maximum number of times the switch port will retransmit
an EAP request packet to the client before it times out the authentication session.
(Range: 1-10; Default 2)
Console(config)#dot1x system-auth-control
4-100
Console(config)#
Console#show dot1x
4-105
Global 802.1X Parameters
system-auth-control: enable
802.1X Port Summary
Port Name Status Operation Mode Mode Authorized
1/1 disabled Single-Host ForceAuthorized n/a
1/2 disabled Single-Host ForceAuthorized n/a
.
.
.
802.1X Port Details
802.1X is disabled on port 1/1
802.1X is disabled on port 26
.
.
.
Console#
Содержание Matrix-V V2H124-24P
Страница 2: ......
Страница 8: ...Notice vi...
Страница 22: ...Contents xx...
Страница 26: ...Tables xxiv...
Страница 30: ...Figures xxviii...
Страница 38: ...Introduction 1 8 1...
Страница 50: ...Initial Configuration 2 12 2...
Страница 159: ...Port Configuration 3 109 3 Figure 3 66 Displaying Etherlike and RMON Statistics...
Страница 234: ...Configuring the Switch 3 184 3...
Страница 480: ...Command Line Interface 4 246 4...
Страница 496: ...Index Index 4...
Страница 497: ......
Страница 498: ...Part 150200039400A FW 2 5 2 0 E012005 R02 ES3526G E072000 R04...