HPE FlexNetwork 7500 Series Security Configuration Manual page 163

Table of Contents

Advertisement

[Device-GigabitEthernet1/0/1] quit
# Enable MAC authentication globally.
[Device] mac-authentication
3.
Configure the RADIUS servers:
# Add a user account with 00-e0-fc-12-34-56 as both the username and password on each
RADIUS server. (Details not shown.)
# Specify ACL 3000 as the authorization ACL for the user account. (Details not shown.)
Verifying the configuration
# Verify the MAC authentication configuration.
[Device] display mac-authentication
Global MAC authentication parameters:
MAC authentication
Username format
Offline detect period
Quiet period
Server timeout
Reauth period
Authentication domain
Online MAC-auth users
Silent MAC users:
MAC address
GigabitEthernet1/0/1
MAC authentication
Carry User-IP
Authentication domain
Auth-delay timer
Periodic reauth
Re-auth server-unreachable : Logoff
Guest VLAN
Guest VLAN auth-period
Critical VLAN
Critical voice VLAN
Host mode
Offline detection
Authentication order
Max online users
Authentication attempts
Current online users
MAC address
00e0-fc12-3456
# Verify that you cannot ping the FTP server from the host.
C:\>ping 10.0.0.1
: Enabled
: MAC address in lowercase(xx-xx-xx-xx-xx-xx)
Username
: mac
Password
: Not configured
: 300 s
: 60 s
: 100 s
: 3600 s
: bbb
: 1
VLAN ID
is link-up
Auth state
Authenticated
From port
: Enabled
: Disabled
: Not configured
: Disabled
: Disabled
: Not configured
: 30 s
: Not configured
: Disabled
: Single VLAN
: Enabled
: Default
: 4294967295
: successful 1, failed 0
: 1
149
Port index

Advertisement

Table of Contents
loading

Table of Contents