Dot1X System-Auth-Control; Dot1X Intrusion-Action - Edge-Core ECS4610-24F Management Manual

24-port layer 3 gigabit ethernet switch
Hide thumbs Also See for ECS4610-24F:
Table of Contents

Advertisement

dot1x system-auth-
control
dot1x intrusion-
action
When this device is functioning as an edge switch but does not require
any attached clients to be authenticated, the no dot1x eapol-pass-
through command can be used to discard unnecessary EAPOL traffic.
E
XAMPLE
This example instructs the switch to pass all EAPOL frame through to any
ports in STP forwarding state.
Console(config)#dot1x eapol-pass-through
Console(config)#
This command enables IEEE 802.1X port authentication globally on the
switch. Use the no form to restore the default.
S
YNTAX
[no] dot1x system-auth-control
D
S
EFAULT
ETTING
Disabled
C
M
OMMAND
ODE
Global Configuration
E
XAMPLE
Console(config)#dot1x system-auth-control
Console(config)#
This command sets the port's response to a failed authentication, either to
block all traffic, or to assign all traffic for the port to a guest VLAN. Use the
no form to reset the default.
S
YNTAX
dot1x intrusion-action {block-traffic | guest-vlan}
no dot1x intrusion-action
block-traffic - Blocks traffic on this port.
guest-vlan - Assigns the user to the Guest VLAN.
D
EFAULT
block-traffic
C
M
OMMAND
ODE
Interface Configuration
– 695 –
| Authentication Commands
C
27
HAPTER
802.1X Port Authentication

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents