Chapter 23: Authentication Commands
802.1X Port Authentication
– 792 –
802.1X P
ORT
A
UTHENTICATION
The switch supports IEEE 802.1X (dot1x) port-based access control that
prevents unauthorized access to the network by requiring users to first
submit credentials for authentication. Client authentication is controlled
centrally by a RADIUS server using EAP (Extensible Authentication
Protocol).
Table 23-13: 802.1X Port Authentication Commands
Command
Function
Mode
General Commands
Resets all dot1x parameters to their default values
GC
Passes EAPOL frames to all ports in STP forwarding
state when dot1x is globally disabled
GC
Enables dot1x globally on the switch.
GC
Authenticator Commands
Sets the port response to intrusion when
authentication fails
IC
Sets the maximum number of times that the switch
sends an EAP-request/identity frame to the client
before restarting the authentication process
IC
Sets the maximum number of times that the switch
retransmits an EAP request/identity packet to the
client before it times out the authentication session
IC
Allows single or multiple hosts on an dot1x port
IC
Sets dot1x mode for a port interface
IC
Enables re-authentication for all ports
IC
Sets the time that a switch port waits after the Max
Request Count has been exceeded before attempting
to acquire a new client
IC
Sets the time period after which a connected client
must be re-authenticated
IC
Sets the interval for a supplicant to respond
IC
Sets the time period during an authentication session
that the switch waits before re-transmitting an EAP
packet
IC
Forces re-authentication on specific ports
PE
Supplicant Commands
Configures dot1x supplicant user name and password GC
Sets the maximum number of times that a port
supplicant will send an EAP start frame to the client
IC
Enables dot1x supplicant mode on an interface
IC
Sets the time that a supplicant port waits for a
response from the authenticator
IC
Sets the time a port waits after the maximum start
count has been exceeded before attempting to find
another authenticator
IC
Sets the time that a supplicant port waits before
resending an EAPOL start frame to the authenticator
IC
Содержание SSE-G2252
Страница 42: ...44 General IP Routing on page 627...
Страница 174: ...Chapter 6 VLAN Configuration Configuring VLAN Mirroring 178 Figure 6 27 Showing the VLANs to Mirror...
Страница 511: ...Chapter 14 Basic Administration Protocols UDLD Configuration 518 Figure 14 100 Displaying UDLD Neighbor Information...
Страница 603: ...Chapter 16 IP Configuration Setting the Switch s IP Address IP Version 6 609...
Страница 883: ...Chapter 24 General Security Measures Port based Traffic Segmentation 894...
Страница 989: ...Chapter 30 Congestion Control Commands Automatic Traffic Control Commands 1000 Console...
Страница 1007: ...Chapter 33 Address Table Commands 1019...
Страница 1137: ...Chapter 38 Quality of Service Commands 1150...
Страница 1366: ...Chapter 46 IP Routing Commands Global Routing Configuration 1381 Connected 2 Total 2 FIB 0 Console...