Static - Juniper JUNOS OS 10.4 - FOR EX REV 1 Manual

For ex series ethernet switches
Table of Contents

Advertisement

static

Syntax
Hierarchy Level
Release Information
Description
Options
Required Privilege
Level
Related
Documentation
Copyright © 2010, Juniper Networks, Inc.
static mac-address {
interface interface-names;
vlan-assignment (vlan-id |vlan-name );
}
[edit protocols dot1x authenticator authentication-profile-name]
Statement introduced in Junos OS Release 9.0 for EX Series switches.
Configure MAC addresses to exclude from 802.1X authentication. The static MAC list
provides an authentication bypass mechanism for supplicants connecting to a port,
permitting devices such as printers that are not 802.1X-enabled to be connected to the
network on 802.1X-enabled ports.
Using this 802.1X authentication-bypass mechanism, the supplicant connected to the
MAC address is assumed to be successfully authenticated and the port is opened for it.
No further authentication is done for the supplicant.
You can optionally configure the VLAN that the supplicant is moved to or the interfaces
on which the MAC address can gain access from.
—The MAC address of the device for which 802.1X authentication should
mac-address
be bypassed and the device permitted access to the port.
The remaining statements are explained separately.
routing—To view this statement in the configuration.
routing-control—To add this statement to the configuration.
show dot1x static-mac-address on page 2985
Example: Configuring Static MAC Bypass of Authentication on an EX Series Switch on
page 2779
Configuring 802.1X Interface Settings (CLI Procedure) on page 2829
Configuring 802.1X Authentication (J-Web Procedure) on page 2830
Understanding Authentication on EX Series Switches on page 2746
Chapter 91: Configuration Statements for Access Control
2949

Advertisement

Table of Contents
loading

This manual is also suitable for:

Junos os 10.4

Table of Contents