Dot1X Critical (Global Configuration) - Cisco Catalyst 3560-X Command Reference Manual

Hide thumbs Also See for Catalyst 3560-X:
Table of Contents

Advertisement

dot1x critical (global configuration)

dot1x critical (global configuration)
Syntax Description
Defaults
Command Modes
Command History
Usage Guidelines
Examples
Catalyst 3750-X and 3560-X Switch Command Reference
2-162
Downloaded from
www.Manualslib.com
Use the dot1x critical global configuration command on the switch stack or on a standalone switch to
configure the parameters for the inaccessible authentication bypass feature, also referred to as critical
authentication or the authentication, authorization, and accounting (AAA) fail policy. To return to
default settings, use the no form of this command.
dot1x critical {eapol | recovery delay milliseconds}
no dot1x critical {eapol | recovery delay}
eapol
recovery delay milliseconds
The switch does not send an EAPOL-Success message to the host when the switch successfully
authenticates the critical port by putting the critical port in the critical-authentication state.
The recovery delay period is 1000 milliseconds (1 second).
Global configuration
Release
Modification
12.2(53)SE2
This command was introduced.
Use the eapol keyword to specify that the switch sends an EAPOL-Success message when the switch
puts the critical port in the critical-authentication state.
Use the recovery delay milliseconds keyword to set the recovery delay period during which the switch
waits to re-initialize a critical port when a RADIUS server that was unavailable becomes available. The
default recovery delay period is 1000 milliseconds. A port can be re-initialized every second.
To enable inaccessible authentication bypass on a port, use the dot1x critical interface configuration
command. To configure the access VLAN to which the switch assigns a critical port, use the dot1x
critical vlan vlan-id interface configuration command.
This example shows how to set 200 as the recovery delay period on the switch:
Switch# dot1x critical recovery delay 200
You can verify your configuration by entering the show dot1x privileged EXEC command.
manuals search engine
Chapter 2
Catalyst 3750-X and 3560-X Switch Cisco IOS Commands
Specify that the switch sends an EAPOL-Success message when the
switch puts the critical port in the critical-authentication state.
Set the recovery delay period in milliseconds. The range is from 1
to 10000 milliseconds.
OL-21522-02

Advertisement

Table of Contents
loading

This manual is also suitable for:

Catalyst 3750-x

Table of Contents