interface <interface-id>

Specify the port to be configured, and enter the interface configuration mode

dot1x timeout quiet-period <seconds>

Set the number of seconds that the switch remains in the quiet state following a failed au- thentication exchange with the client.

The range is from 1 to 65535 seconds, the default is 60.

end

Return to the privileged EXEC mode.

show dot1x interface

Verify your entries.

To restore the default quiet time, use the no dot1x timeout quiet-periodinterface configuration command.

Fig. 14–8 Example

Switch(config-if)# dot1x timeout quiet-period 30

14.3.13DHCP

It is possible instead of configuring the Access Control Server IPs locally on the client computer to distribute them via DHCP.

The Access Control Server IPs the client computer received via DHCP are visible in the Advanced Settings section of the Barracuda NG Access Monitor or the Barracuda NG Personal Firewall. Both provide the functionality to delete the Access Control Server IPs, if necessary.

DHCP Renew

If the client computers in the network are configured to obtain their IP address using DHCP, there is the possibility to trigger a DHCP renew whenever the client computer is assigned a different VLAN. This can be configured either on the Access Control Server forcing it on the clients, or on the client computer itself.

Table 14–12Key 8021xEnableDHCPRenew

Item Description

Path HKEY_USERS\.Default\Software\phion\phionvpn\settings

Key 8021xEnableDHCPRenew

Value Enables or disables DHCP request when the assigned VLAN changes. (Default=0)

0 - disabled

1 - enabled

Changes of this value take effect immidiately.

196 802.1X – Technical Guideline

Page 198
Image 198
Barracuda Networks VERSION SP4 manual Return to the privileged Exec mode, Dhcp Renew