Configuring An Authentication-Fail Vlan - Dell C9000 Series Networking Configuration Manual

Hide thumbs Also See for C9000 Series:
Table of Contents

Advertisement

Auth-Fail VLAN id:
Auth-Fail Max-Attempts: 5
Tx Period:
Quiet Period:
ReAuth Max:
Supplicant Timeout:
Server Timeout:
Re-Auth Interval:
Max-EAP-Req:
Auth Type:
Auth PAE State:
Backend State:

Configuring an Authentication-Fail VLAN

If the supplicant fails authentication, the authenticator re-attempts to authenticate after a specified amount of
time.
NOTE:
For more information about authenticator re-attempts, refer to
Configuring a Quiet Period after a Failed
You can configure the maximum number of times the authenticator re-attempts authentication after a failure
(3 by default), after which the port is placed in the Authentication-fail VLAN.
Configure a port to be placed in the VLAN after failing the authentication process as specified number of
times using the dot1x auth-fail-vlan command from INTERFACE mode. Configure the maximum
number of authentication attempts by the authenticator using the keyword max-attempts with this
command.
Example of Configuring Maximum Authentication Attempts
Dell(conf-if-Te-2/1)#dot1x auth-fail-vlan 100 max-attempts 5
Dell(conf-if-Te-2/1)#show config
!
interface TenGigabitEthernet 2/1
switchport
dot1x authentication
dot1x guest-vlan 200
dot1x auth-fail-vlan 100 max-attempts 5
no shutdown
Dell(conf-if-Te-2/1)#
Dell#show int TenGigabitEthernet 2/1
TenGigabitEthernet 2/1 is up, line protocol is down(802.1x authorization failed)
Hardware is DellEth, address is 34:17:eb:00:aa:12
Current address is 34:17:eb:00:aa:12
Pluggable media not present
Interface index is 804258823
Internet address is not set
Mode of IPv4 Address Assignment : NONE
DHCP Client-ID :3417eb00aa12
MTU 1554 bytes, IP MTU 1500 bytes
LineSpeed 1000 Mbit, Mode auto
Auto-mdix enabled, ARP type: ARPA, ARP Timeout 04:00:00
Last clearing of "show interface" counters 20:06:07
Queueing strategy: fifo
Input Statistics:
10760802379 packets, 688691353132 bytes
10760802177 64-byte pkts, 203 over 64-byte pkts, 0 over 127-byte pkts
NONE
90 seconds
120 seconds
10
15 seconds
15 seconds
7200 seconds
10
SINGLE_HOST
Initialize
Initialize
Authentication.
802.1X
115

Advertisement

Table of Contents
loading

Table of Contents