Chapter 8
| General Security Measures
Web Authentication
web-auth
login-attempts
Note:
RADIUS authentication must be activated and configured for the web
authentication feature to work properly (see
page
185).
Note:
Web authentication cannot be configured on trunk ports.
Table 52: Web Authentication
Command
web-auth login-attempts
web-auth quiet-period
web-auth session-timeout
web-auth system-auth-control
web-auth
web-auth re-authenticate (Port)
web-auth re-authenticate (IP)
show web-auth
show web-auth interface
show web-auth summary
This command defines the limit for failed web authentication login attempts. After
the limit is reached, the switch refuses further login attempts until the quiet time
expires. Use the no form to restore the default.
Syntax
web-auth login-attempts count
no web-auth login-attempts
count - The limit of allowed failed login attempts. (Range: 1-3)
Default Setting
3 login attempts
Command Mode
Global Configuration
"Authentication Sequence" on
Function
Defines the limit for failed web authentication login
attempts
Defines the amount of time to wait after the limit for
failed login attempts is exceeded.
Defines the amount of time a session remains valid
Enables web authentication globally for the switch
Enables web authentication for an interface
Ends all web authentication sessions on the port and
forces the users to re-authenticate
Ends the web authentication session associated with the
designated IP address and forces the user to re-
authenticate
Displays global web authentication parameters
Displays interface-specific web authentication
parameters and statistics
Displays a summary of web authentication port
parameters and statistics
– 264 –
Mode
GC
GC
GC
GC
IC
PE
PE
PE
PE
PE