General Security Measures
3-117
3
Web
– Click Security, Network Access, Configuration.
Figure 3-69 Network Access Configuration
CLI
– This example sets and displays the reauthentication time.
Configures MAC authentication on switch ports, including setting the maximum MAC
count, applying a MAC address filter, and enabling dynamic VLAN or dynamic QoS
assignments.
Command Attributes
•
Mode
– Enables MAC authentication on a port. (Default: None)
•
Maximum MAC Count
– Sets the maximum number of MAC addresses that can
be authenticated on a port. The maximum number of MAC addresses per port is
2048, and the maximum number of secure MAC addresses supported for the
switch system is 1024. When the limit is reached, all new MAC addresses are
treated as authentication failed. (Default: 2048; Range: 1 to 2048)
•
MAC Filter ID
– Allows a MAC Filter to be assigned to the port. MAC addresses or
MAC address ranges present in a selected MAC Filter are exempt from
authentication on the specified port (as described under MAC Filter Configuration
on page 3-121). (Range: 1-64; Default: None)
•
Guest VLAN
– Specifies the VLAN to be assigned to the port when MAC
Authentication or 802.1X Authentication fails. (Default: Disabled; Range: 1 to 4092)
The VLAN must already be created and active (see Creating VLANs on page
3-222). Also, when used with 802.1X authentication, intrusion action must be set
for “Guest VLAN” (see Configuring Port Settings for 802.1X on page 3-101).
Содержание 6152PL2 FICHE
Страница 2: ......
Страница 6: ...vi ...
Страница 8: ...viii ...
Страница 32: ...Tables xxxii ...
Страница 38: ...Figures xxxviii ...
Страница 56: ...Initial Configuration 2 10 2 ...
Страница 378: ...Configuring the Switch 3 322 3 ...
Страница 651: ...Address Table Commands 4 273 4 Example Console show mac address table aging time Aging time 100 sec Console ...
Страница 817: ......
Страница 818: ...SMC6128PL2 SMC6152PL2 149100000007A R01 ...