Server-Fail - Juniper JUNOS OS 10.3 - SOFTWARE Manual

For ex series ethernet switches
Hide thumbs Also See for JUNOS OS 10.3 - SOFTWARE:
Table of Contents

Advertisement

server-fail

Syntax
Hierarchy Level
Release Information
Description
Default
Options
Required Privilege
Level
Related
Documentation
Copyright © 2010, Juniper Networks, Inc.
server-fail (deny | permit | use-cache | vlan-id | vlan-name);
[edit protocols dot1x authenticator interface (all | [interface-names])]
Statement introduced in Junos OS Release 9.3 for EX Series switches.
For EX Series switches configured for 802.1X authentication, specify the server fail fallback
action the switch takes when all RADIUS authentication servers are unreachable.
When you specify the action
on the switch.
Authentication is denied.
deny
—Force fail the supplicant authentication. No traffic will flow through the interface.
—Force succeed the supplicant authentication. Traffic will flow through the
permit
interface as if it were successfully authenticated by the RADIUS server.
use-cache
—Force succeed the supplicant authentication only if it was previously
authenticated successfully. This action ensures that already authenticated
supplicants are not affected.
vlan-id
—Move supplicant on the interface to the VLAN specified by this numeric identifier.
This action is allowed only if it is the first supplicant connecting to the interface. If
an authenticated supplicant is already connected, then the supplicant is not moved
to the VLAN and is not authenticated.
—Move supplicant on the interface to the VLAN specified by this name. This
vlan-name
action is allowed only if it is the first supplicant connecting to an interface. If an
authenticated supplicant is already connected, then the supplicant is not moved to
the VLAN and is not authenticated.
routing—To view this statement in the configuration.
routing-control—To add this statement to the configuration.
show dot1x on page 2757
Example: Configuring 802.1X Authentication Options When the RADIUS Server is
Unavailable to an EX Series Switch on page 2550
Example: Connecting a RADIUS Server for 802.1X to an EX Series Switch on page 2545
Configuring Server Fail Fallback (CLI Procedure) on page 2615
Understanding Server Fail Fallback and 802.1X Authentication on EX Series Switches
on page 2536
Chapter 85: Configuration Statements for Access Control
vlan-name
or
vlan-id
, the VLAN must already be configured
2723

Advertisement

Table of Contents
loading

Table of Contents