Juniper JUNOS OS 10.3 - SOFTWARE Manual page 2712

For ex series ethernet switches
Hide thumbs Also See for JUNOS OS 10.3 - SOFTWARE:
Table of Contents

Advertisement

Complete Software Guide for Junos
Related
Documentation
2616
®
OS for EX Series Ethernet Switches, Release 10.3
To configure basic server fail fallback options using the CLI:
Configure an interface to allow traffic to flow from a supplicant to the LAN if a RADIUS
server timeout occurs (as if the end device had been successfully authenticated by a
RADIUS server):
[edit protocols dot1x authenticator]
user@switch# set interface ge-0/0/1 server-fail permit
Configure an interface to prevent traffic flow from an end device to the LAN (as if the
end device had failed authentication and had been rejected by the RADIUS server):
[edit protocols dot1x authenticator]
user@switch# set interface ge-0/0/1 server-fail deny
Configure an interface to move an end device to a specified VLAN if a RADIUS server
timeout occurs (in this case, the VLAN name is
[edit protocols dot1x authenticator]
user@switch# set interface ge-0/0/1 server-fail vlan-name vlan1
Configure an interface to recognize already connected end devices as reauthenticated
if there is a RADIUS timeout during reauthentication (new users will be denied access):
[edit protocols dot1x authenticator]
user@switch# set interface ge-0/0/1 server-fail use-cache
Configure an interface that receives an EAPOL access-reject message from the
authentication server to move end devices attempting LAN access on the interface to
a specified VLAN already configured on the switch (in this case, the VLAN name is
):
vlan-sf
[edit protocols dot1x authenticator]
user@switch# set interface ge-0/0/1 server-reject-vlan vlan-sf
Example: Configuring 802.1X Authentication Options When the RADIUS Server is
Unavailable to an EX Series Switch on page 2550
Configuring 802.1X Authentication (J-Web Procedure) on page 2610
Configuring 802.1X Interface Settings (CLI Procedure) on page 2609
Monitoring 802.1X Authentication on page 2633
Understanding Server Fail Fallback and 802.1X Authentication on EX Series Switches
on page 2536
):
vlan1
Copyright © 2010, Juniper Networks, Inc.

Advertisement

Table of Contents
loading

Table of Contents