Configuring 802.1X Re-Authentication; Configuring The 802.1X Re-Authentication Timer - H3C S3100-52P Operation Manual

Hide thumbs Also See for S3100-52P:
Table of Contents

Advertisement

Operation Manual – 802.1x and System Guard
H3C S3100-52P Ethernet switch
Caution:
The guest VLAN function is available only when the switch operates in the
port-based authentication mode.
Only one guest VLAN can be configured for each switch.
The guest VLAN function cannot be implemented if you configure the dot1x
dhcp-launch command on the switch to enable DHCP-triggered authentication.
This is because the switch does not send authentication packets in that case.

1.4.5 Configuring 802.1x Re-Authentication

Follow these steps to enable 802.1x re-authentication:
Enter system view
Enable 802.1x
re-authenticati
on on port(s)
Note:
To enable 802.1x re-authentication on a port, you must first enable 802.1x globally
and on the port.
When re-authenticating a user, a switch goes through the complete authentication
process. It transmits the username and password of the user to the server. The
server may authenticate the username and password, or, however, use
re-authentication for only accounting and user connection status checking and
therefore does not authenticate the username and password any more.
An authentication server running CAMS authenticates the username and password
during re-authentication of a user in the EAP authentication mode but does not in
PAP or CHAP authentication mode.

1.4.6 Configuring the 802.1x Re-Authentication Timer

After 802.1x re-authentication is enabled on the switch, the switch determines the
re-authentication interval in one of the following two ways:
To do...
In system
view
In port view
Use the command...
system-view
dot1x re-authenticate
[ interface interface-list ]
dot1x re-authenticate
1-23
Chapter 1 802.1x Configuration
Remarks
Required
By default, 802.1x
re-authentication is
disabled on a port.

Advertisement

Table of Contents
loading

Table of Contents