3 Configuring the Switch

CLI – This example sets the 802.1X parameters on port 2. For a description of the additional fields displayed in this example, see “show dot1x” on page 4-83.

Console(config)#interface ethernet 1/2

 

4-125

Console(config-if)#dot1x port-control auto

 

4-80

Console(config-if)#dot1x re-authentication

 

4-81

Console(config-if)#dot1x max-req 5

 

4-79

Console(config-if)#dot1x timeout quiet-period 40

4-82

Console(config-if)#dot1x timeout re-authperiod 5

4-82

Console(config-if)#dot1x timeout tx-period 40

4-83

Console(config-if)#end

 

 

 

Console#show dot1x

 

 

4-83

Global 802.1X Parameters

 

 

system-auth-control: enable

 

 

802.1X Port Summary

 

 

 

Port Name

Status

Operation Mode

Mode

Authorized

1/1

disabled

Single-Host

ForceAuthorized

yes

1/2

enabled

Single-Host

Auto

yes

.

 

 

 

 

.

 

 

 

 

.

 

 

 

 

1/7

disabled

Single-Host

ForceAuthorized

n/a

1/8

disabled

Single-Host

ForceAuthorized

n/a

802.1X Port Details

 

 

 

802.1X is disabled on

port 1/1

 

 

802.1X is enabled on port 1/2

 

 

reauth-enabled:

Disable

 

 

reauth-period:

3600

 

 

quiet-period:

60

 

 

tx-period:

 

30

 

 

supplicant-timeout:

30

 

 

server-timeout:

10

 

 

reauth-max:

 

2

 

 

max-req:

 

2

 

 

Status

 

Authorized

 

 

Operation mode

Single-Host

 

 

Max count

 

5

 

 

Port-control

Auto

 

 

Supplicant

 

00-e0-29-94-34-65

 

 

Current Identifier

7

 

 

Authenticator State Machine

 

 

State

 

Authenticated

 

 

Reauth Count

0

 

 

Backend State Machine

 

 

 

State

 

Idle

 

 

Request Count

0

 

 

Identifier(Server)

6

 

 

Reauthentication State Machine

 

 

State

 

Initialize

 

 

.

 

 

 

 

.

 

 

 

 

.

 

 

 

 

.

 

port 1/8

 

 

802.1X is disabled on

 

 

Console#

3-68