Download Print this page

Dot1X Unicast-Trigger - HP FlexNetwork MSR Series Command Reference Manual

Comware 7 security
Hide thumbs Also See for FlexNetwork MSR Series:

Advertisement

Client timeout timer (supp-timeout)—Starts when the access device sends an
EAP-Request/MD5-Challenge packet to a client. If no response is received when this timer
expires, the access device retransmits the request to the client.
Username request timeout timer (tx-period)—Starts when the device sends an
EAP-Request/Identity packet to a client in response to an authentication request. If the device
does not receive a response before this timer expires, it retransmits the request. The timer also
sets the interval at which the network device sends multicast EAP-Request/Identity packets to
detect clients that cannot actively request authentication.
The change to the periodic reauthentication timer applies to the users who have been online only
after the old timer expires. Other timer changes take effect immediately on the device.
Examples
# Set the server timeout timer to 150 seconds.
<Sysname> system-view
[Sysname] dot1x timer server-timeout 150
Related commands
display dot1x

dot1x unicast-trigger

Use dot1x unicast-trigger to enable the 802.1X unicast trigger feature.
Use undo dot1x unicast-trigger to disable the 802.1X unicast trigger feature.
Syntax
dot1x unicast-trigger
undo dot1x unicast-trigger
Default
The 802.1X unicast trigger feature is disabled.
Views
Ethernet interface view
Predefined user roles
network-admin
Usage guidelines
The unicast trigger feature enables the access device to initiate 802.1X authentication when the
device receives a data frame from an unknown source MAC address. The device sends a unicast
EAP-Request/Identity packet to the unknown source MAC address. It will retransmit the packet if it
does not receive any responses within a period of time (set by using the dot1x timer tx-period
command). This process continues until the maximum number of request attempts (set by using the
dot1x retry command) is reached.
Examples
# Enable the unicast trigger feature on GigabitEthernet 1/0/1.
<Sysname> system-view
[Sysname] interface gigabitethernet 1/0/1
[Sysname-GigabitEthernet1/0/1] dot1x unicast-trigger
Related commands
display dot1x
dot1x multicast-trigger
185

Advertisement

loading