Siemens RUGGEDCOM ROX II User Manual page 179

Hide thumbs Also See for RUGGEDCOM ROX II:
Table of Contents

Advertisement

RUGGEDCOM ROX II
CLI User Guide
Parameter
auto-learn { auto-learn }
shutdown-time { shutdown-time }
admin-shutdown
4.
Configure the IEEE 802.1x settings by configuring the following parameter(s) as required:
Parameter
tx-period { tx-period }
quiet-period { quiet-period }
reauth-enable
reauth-period { reauth-period }
reauth-max { reauth-max }
supp-timeout { supp-timeout }
server-timeout { server-timeout }
Configuring Port Security
• per_macaddress - Only packets from authorized MAC addresses are forwarded.
Authorized MAC addresses are either preconfigured in the static MAC address table or
learned dynamically.
• off - Disables security on the port
Synopsis:   A 32-bit signed integer between 0 and 16
Default:   0
The maximum number of MAC addresses that can be learned dynamically by the port.
This includes static MAC addresses defined in the Static MAC Address table. Therefore,
the actual number of learned MAC addresses is this number minus the number of
addresses defined in the Static MAC Address table.
Security Mode must be set to either per_macaddress or dot1x_mac_auth.
Synopsis:   A 32-bit signed integer between 1 and 86400
The time in seconds (s) the port will be disabled if a security violation occurs.
Shutdown Enable must be enabled.
When enabled, the port is automatically shut down if a security violation occurs. The port
is enabled automatically after the period of time specified by Shutdown Time.
Synopsis:   A 32-bit signed integer between 1 and 65535
Default:   30
The maximum time in seconds (s) allowed for one full set of packets to be transferred
between the port and its client.
Synopsis:   A 32-bit signed integer between 0 and 65535
Default:   60
The time in seconds (s) to wait before retransmitting EAPoL packets to the client after a
failed authentication session.
When enabled, the port will attempt to reauthenticate the client periodically. The period
of time between each reauthentication attempt is specified by Reauthentication Period.
The port is considered unauthorized when the maximum number of reauthentication
attempts (as defined by Reauthentication Max Attempts) is exceeded.
Synopsis:   A 32-bit signed integer between 60 and 86400
Default:   3600
The period of time in seconds (s) the port will wait before attempting to reauthenticate
the client.
Reauthentication must be enabled.
Synopsis:   A 32-bit signed integer between 1 and 10
Default:   2
The maximum number of unsuccessful reauthentication attempts allowed, after which
the client is considered unauthorized.
Reauthentication must be enabled.
Synopsis:   A 32-bit signed integer between 1 and 300
Default:   30
The period of time in seconds (s) the port will wait to receive the client's response to the
authentication server's request. If no response is received by the end of this period, the
authentication session fails.
Synopsis:   A 32-bit signed integer between 1 and 300
Default:   30
Description
Description
Chapter 6
Security
133

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents