Viewing 802.1X Open Vlan Mode Status - HP E3800-24G-PoE+-2SFP+ Access Security Manual

Switch software
Hide thumbs Also See for E3800-24G-PoE+-2SFP+:
Table of Contents

Advertisement

Configuring Port-Based and User-Based Access Control (802.1X)
Displaying 802.1X Configuration, Statistics, and Counters
HP Switch# show port-access authenticator vlan
Port Access Authenticator VLAN Configuration
Port-access authenticator activated [No] : Yes
Access
Unauth
Port Control
VLAN ID
---- -------- -------- --------
1
Auto
100
2
Auto
100
3
Auto
100
4
Auto
100
HP Switch# show port-access authenticator 1-4
Port Access Authenticator Status
Port-access authenticator activated [No] : No
Authenticator
Port Status State
---- ------ -------------- -------------- -------- ----------- --------------
1
Closed Connecting
2
Open
Authorized
3
Closed Connecting
4
Closed Connecting
1
2
Items 1 through 3 indicate that an authenticated client is connected to port 2:
1.Open in the Status column
2.Authorized in the Authenticator State column
3.The Auth VLAN ID (101) is also in the Current VLAN ID column. (This assumes that the port is not a statically configured
member of VLAN 101.)
4.A "0" in the row for port 3 indicates there is no Authorized VLAN configured for port 3.
5.No PVID" means there is currently no untagged VLAN membership on port 4.
Figure 13-18. Example Showing Ports Configured for Open VLAN Mode
13-64

Viewing 802.1X Open VLAN Mode Status

You can examine the switch's current VLAN status by using the show port-
access authenticator vlan and show port-access authenticator < port-list > com-
mands as illustrated in figure 13-18. Table 13-1 describes the data that these
two commands display. Figure 13-19 shows related VLAN data that can help
you to see how the switch is using statically configured VLANs to support
802.1X operation.
Auth
VLAN ID
101
101
0
101
4
Authenticator
Backend State
Idle
Idle
Idle
Idle
In these two show outputs, an Unauth VLAN ID
appearing in the Current VLAN ID column for the
same port indicates an unauthenticated client is
connected to this port. (Assumes that the port is
not a statically configured member of VLAN 100.)
3
3
Note: Series 5400zl switches do not include the
Authenticator State and Authenticator Backend
State fields shown in this figure.
Current
Current
VLAN ID
Port COS
100
No-override No-override
101
No-override No-override
100
No-override No-override
No PVID
No-override No-override
5
% Curr. Rate
Limit Inbound

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents