Dot1X Port-Control - Edge-Core ES3510MA Management Manual

8-port layer 2 fast ethernet switch
Hide thumbs Also See for ES3510MA:
Table of Contents

Advertisement

D
Single-host
C
Interface Configuration
C
E
This command sets the dot1x mode on a port interface. Use the no form to

dot1x port-control

restore the default.
S
D
force-authorized
C
Interface Configuration
EFAULT
M
OMMAND
ODE
U
OMMAND
SAGE
The "max-count" parameter specified by this command is only effective
if the dot1x mode is set to "auto" by the
In "multi-host" mode, only one host connected to a port needs to pass
authentication for all other hosts to be granted network access.
Similarly, a port can become unauthorized for all hosts if one attached
host fails re-authentication or sends an EAPOL logoff message.
In "mac-based-auth" mode, each host connected to a port needs to
pass authentication. The number of hosts allowed access to a port
operating in this mode is limited only by the available space in the
secure address table (i.e., up to 1024 addresses).
XAMPLE
Console(config)#interface eth 1/2
Console(config-if)#dot1x operation-mode multi-host max-count 10
Console(config-if)#
YNTAX
dot1x port-control {auto | force-authorized |
force-unauthorized}
no dot1x port-control
auto – Requires a dot1x-aware connected client to be authorized by
the RADIUS server. Clients that are not dot1x-aware will be denied
access.
force-authorized – Configures the port to grant access to all
clients, either
dot1x-aware or otherwise.
force-unauthorized – Configures the port to deny access to all
clients, either dot1x-aware or otherwise.
EFAULT
M
OMMAND
ODE
– 623 –
| Authentication Commands
C
24
HAPTER
802.1X Port Authentication
dot1x port-control
command.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents