Cisco WS-X6066-SLB-APC - Content Switching Module Software Manual page 453

Catalyst 6000 series software configuration guide
Hide thumbs Also See for WS-X6066-SLB-APC - Content Switching Module:
Table of Contents

Advertisement

Chapter 21
Configuring Switch Access Using AAA
To manually reauthenticate a supplicant connected to a specific port, perform this task in privileged
mode:
Task
Manually reauthenticate the supplicant connected
to a specific port.
This example shows how to manually reauthenticate the supplicant connected to port 1 on module 4:
Console> (enable) set port dot1x 4/1 re-authenticate
Port 4/1 re-authenticating...
dot1x re-authentication successful...
dot1x port 4/1 authorized.
Enabling Multiple Hosts
You can enable a specific port to allow multiple-user access. When a port is enabled for multiple users,
and a supplicant connected to that port is authorized successfully, any host (with any MAC address) is
allowed to send and receive traffic on that port. If you then connect multiple supplicants to that port
through a hub, you can reduce the security level on that port.
To enable multiple-user access on a specific port, perform this task in privileged mode:
Task
Enable multiple hosts on a specific port.
This example shows how to enable access for multiple hosts on port 1 on module 4:
Console> (enable) set port dot1x 4/1 multiple-host enable
Port 4/1 multiple hosts allowed.
Disabling Multiple Hosts
You can disable multiple-user access on any port where it is enabled.
To disable multiple-user access on a specific port, perform this task in privileged mode:
Task
Disable multiple hosts on a specific port.
This example shows how to disable access for multiple hosts on port 1 on module 4:
Console> (enable) set port dot1x 4/1 multiple-host disable
Port 4/1 multiple hosts not allowed.
Setting the Quiet Period
When the authenticator cannot authenticate the supplicant, it remains idle for set a period of time, and
then tries again. The idle time is determined by the quiet-period value. (The default is 60 seconds.) You
may set the value from 0 to 65535 seconds.
78-13315-02
Command
set port dot1x mod/port re-authenticate
Command
set port dot1x mod/port multiple-host enable
Command
set port dot1x mod/port multiple-host disable
Catalyst 6000 Family Software Configuration Guide—Releases 6.3 and 6.4
Configuring Authentication
21-43

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents