Chapter 24 - 802.1X Commands - Allied Telesis AT-9724TS Reference Manual

High-density layer 3 stackable gigabit ethernet switch command line interface
Hide thumbs Also See for AT-9724TS:
Table of Contents

Advertisement

Chapter 24 - 802.1X Commands

The AT-9724TS implements the server-side of the IEEE 802.1x Port-based and MAC-based Network Access Control.This mechanism is intended to allow only
authorized users, or other network devices, access to network resources by establishing criteria for each port on the Switch that a user or network device must
meet before allowing that port to forward or receive frames.
Command
enable 802.1x
disable 802.1x
create 802.1x user
show 802.1x user
delete 802.1x user
show 802.1x auth_state
show 802.1x auth_configuration
config 802.1x auth_mode
config 802.1x capability
config 802.1x auth_parameter ports
config 802.1x auth_protocol
config 802.1x init
config 802.1x reauth
config radius add
<server_index 1-3>
<server_index 1-3> {ipaddress <server_ip> | key <passwd 32> [auth_port <udp_port_number 1-65535> acct_port <udp_port_number 1-65535>]}
show radius
show acct_client
show auth_client
show auth_diagnostics
show auth_session statistics
show auth_statistics
Each command is listed, in detail, in the following sections.
enable 802.1x
Purpose
Syntax
Description
Parameters
Restrictions
Example usage:
To enable 802.1x switch wide:
Allied Telesyn AT-9724TS High-Density Layer 3 Stackable Gigabit Ethernet Switch • Command Line Interface Reference Manual
Parameters
<username 15>
ports [<portlist> | all]
ports [<portlist> | all]
[port_based | mac_based]
[ports <portlist> | all] [authenticator | none]
[<portlist> | all] [default | {direction [both | in] | port_control [force_unauth | auto | force_auth] |
quiet_period <sec 0-65535> | tx_period <sec 1-65535> | supp_timeout <sec 1-65535> | server_timeout <sec
1-65535> | max_req <value 1-10> | reauth_period <sec 1-65535> | enable_reauth [enable | disable]}]
[local | radius eap]
{port_based ports [<portlist> | all]} | mac_based [ports] [<portlist> | all] {mac_address <macaddr>}]
{port_based ports [<portlist> | all]} [<portlist> | all] {mac_address <macaddr>}]
<server_index 1-3> <server_ip> key <passwd 32> [default {auth_port <udp_port_number 1-65535> |
acct_port <udp_port_number 1-65535>}]
{ports [<portlist> | all]}
{ports [<portlist> | all]}
{ports [<portlist> | all]}
Used to enable the 802.1x server on the Switch.
enable 802.1x
The enable 802.1x command enables the 802.1x Network Access control server application on the Switch.
To select between port-based or MAC-based, use the config 802.1x auth_mode command.
None.
Only administrator-level users can issue this command.
AT-9724TS:4# enable 802.1x
Command: enable 802.1x
S u c c e s s .
A T - 9 7 2 4 T S : 4 #
167

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents