Juniper JUNOS OS 10.3 - SOFTWARE Manual page 2854

For ex series ethernet switches
Hide thumbs Also See for JUNOS OS 10.3 - SOFTWARE:
Table of Contents

Advertisement

Complete Software Guide for Junos
Table 351: show dot1x Output Fields (continued)
Field Name
Field Description
The 802.1X authentication role of the interface. When 802.1X is enabled on an
Role
interface, the role is
access until a supplicant is authenticated through 802.1X or MAC RADIUS
authentication.
State
The state of the port:
Authenticated
server or has been permitted access through server fail fallback.
Authenticating
Held
RADIUS server timeout. A supplicant is denied access, permitted access
through a specified VLAN, or maintains the authenticated state granted to
it before the RADIUS server timeout occurred.
The administrative state of the port:
Administrative state
auto
(Default)
force-authorize
authentication result. This state is not allowed on an interface whose VLAN
membership has been set to
force-unauthorize
authentication result. This state is not allowed on an interface whose VLAN
membership has been set to
The mode for the supplicant:
Supplicant
single
connect later to the port are allowed full access without any further
authentication. They effectively "piggyback" on the first supplicant's
authentication.
single-secure
supplicant is allowed to connect until the first supplicant logs out.
multiple
is authenticated individually.
The number of seconds the port remains in the wait state following a failed
Quiet period
authentication exchange with the supplicant before reattempting the
authentication. The default value is 60 seconds. The range is 0 through 65,535
seconds.
Transmit period
The number of seconds the port waits before retransmitting the initial EAPOL
PDUs to the supplicant. The default value is 30 seconds. The range is 1 through
65,535 seconds.
MAC RADIUS authentication:
MAC radius
enabled
attempt 802.1X authentication and if the connecting host is unresponsive,
the switch tries to authenticate using the MAC address.
disabled
address of the connecting host.
2758
®
OS for EX Series Ethernet Switches, Release 10.3
. As
Authenticator
—The supplicant has been authenticated through the RADIUS
—The supplicant is authenticating through the RADIUS server.
—An action has been triggered through server fail fallback during a
—Traffic is allowed through the port based on the authentication result.
—All traffic flows through the port irrespective of the
dynamic
—All traffic drops on the port irrespective of the
dynamic
—Authenticates only the first supplicant. All other supplicants who
—Allows only one supplicant to connect to the port. No other
—Allows multiple supplicants to connect to the port. Each supplicant
—The switch sends an EAPOL request to the connecting host to
—The default. The switch will not attempt to authenticate the MAC
, the interface blocks LAN
Authenticator
.
.
Copyright © 2010, Juniper Networks, Inc.
Level of Output
,
brief
detail
brief
detail
detail
detail
detail
detail

Advertisement

Table of Contents
loading

Table of Contents