Authentication Commands 4

count - The maximum number of authenticated MAC addresses allowed. (Range: 1 to 2048; 0 for unlimited)

Default Setting

2048

Command Mode

Interface Configuration

Command Usage

The maximum number of MAC addresses per port is 2048, and the maximum number of secure MAC addresses supported for the switch system is 1024. When the limit is reached, all new MAC addresses are treated as authentication failed.

Example

Console(config-if)#network-access max-mac-count 5

Console(config-if)#

mac-authentication intrusion-action

Use this command to configure the port response to a host MAC authentication failure. Use the no form of this command to restore the default.

Syntax

mac-authentication intrusion-action [block traffic pass traffic] no mac-authentication intrusion-action

Default Setting

Block Traffic

Command Mode

Interface Config

Example

Console(config-if)#mac-authentication intrusion-action block-traffic Console(config-if)#

mac-authentication max-mac-count

Use this command to set the maximum number of MAC addresses that can be authenticated on a port via 802.1X authentication or MAC authentication. Use the no form of this command to restore the default.

Syntax

mac-authentication max-mac-count count no mac-authentication max-mac-count

count - The maximum number of 802.1X and MAC-authenticated MAC addresses allowed. (Range: 1-1024)

4-123

Page 419
Image 419
Accton Technology ES3528M-SFP Mac-authentication intrusion-action, Mac-authentication max-mac-count, 2048, Block Traffic