Avaya G250 Administration page 53

Media gateways
Hide thumbs Also See for G250:
Table of Contents

Advertisement

5. Use the set dot1x port-mode command, followed by an authentication mode, to
specify the mode of authentication for all G250/G350 ports: port-based (single supplicant)
or MAC-based (multi supplicants). For example:
G350-001(super)# set dot1x port mode mac-based-authentication
If you specify MAC-based authentication, use the set dot1x max-supp-per-port
command, followed by a number from 1 to 8, to specify the supported number of
supplicants per port. For example:
G350-001(super)# set dot1x max-supp-per-port 3
Note:
You may not connect multiple 802.1x stations to a single port configured in
Note:
port-based mode. It is therefore highly recommended to configure all ports in
MAC-based (multi supplicants) mode, and configure the number of supplicants
per port.
6. For additional security, use the set port dot1x re-authentication command,
followed by the module and port number (or a range of ports) to enable re-authentication
on a port or a group of ports. By default, re-authentication is disabled. For example:
G250-001(super)# set port dot1x re-authentication 10/4-6 enable
G350-001(super)# set port dot1x re-authentication 6/4-6 enable
Note:
It is highly recommended to enable re-authentication. This is especially important
Note:
for MAC-based mode, where the re-authentication timer helps to re-authenticate
a device that moved to another port. In this case, re-authentication updates the
802.1x port state regarding the supplicant connected to it.
To disable re-authentication, use the command set port dot1x
re-authentication module/port disable.
7. By default, the re-authentication period is 3600 seconds. In other words, if
re-authentication is enabled on a port, the port attempts to re-authenticate the host every
3600 seconds. To change the re-authentication period, use the set dot1x
re-authperiod command, followed by the length of the new re-authentication period in
seconds (0 to 65535). For example:
G250-001(super)# set port dot1x re-authperiod 10/4 400
G350-001(super)# set port dot1x re-authperiod 6/4 400
Managing login permissions
Issue 3 February 2007
53

Advertisement

Table of Contents
loading

This manual is also suitable for:

G350

Table of Contents