Displaying 802.1X information

Displaying 802.1X multiple-host configuration information

The output of the show dot1x and show dot1x config commands displays information related to 802.1X multiple-host authentication.

The following is an example of the output of the show dot1x command. The information related to multiple-host authentication is highlighted in bold.

Brocade# show dot1x

 

Number of Ports enabled

: 2

Re-Authentication

: Enabled

Authentication-fail-action

: Restricted VLAN

Authentication Failure VLAN

: 111

Mac Session Aging

: Disabled for permitted MAC sessions

Mac Session max-age

: 60 seconds

Protocol Version

: 1

quiet-period

: 5 Seconds

tx-period

: 30 Seconds

supptimeout

: 30 Seconds

servertimeout

: 30 Seconds

maxreq

: 2

re-authperiod

: 3600 Seconds

security-hold-time

: 60 Seconds

re-authentication

: Enable

Flow based multi-user policy

: Disable

Syntax: show dot1x

Table 35 describes the bold fields in the display.

TABLE 35 Output from the show dot1x command for multiple host authentication

Field

Description

 

 

Authentication-fail-action

The configured authentication-failure action. This can be Restricted

 

VLAN or Block Traffic.

 

 

Authentication Failure VLAN

If the authentication-failure action is Restricted VLAN, the ID of the VLAN

 

to which unsuccessfully authenticated Client ports are assigned.

 

 

Mac Session Aging

Whether aging for dot1x-mac-sessions has been enabled or disabled for

 

permitted or denied dot1x-mac-sessions.

 

 

Mac Session max-age

The configured software aging time for dot1x-mac-sessions.

 

 

Flow based multi-user policy

The dynamically assigned IP ACLs and MAC address filters used in the

 

802.1X multiple-host configuration.

 

 

The output of the show dot1x config command for an interface displays the configured port control for the interface. This command also displays information related to 802.1X multiple host-authentication.

The following is an example of the output of the show dot1x config command for an interface.

192

Brocade ICX 6650 Security Configuration Guide

 

53-1002601-01

Page 212
Image 212
Brocade Communications Systems 6650 Displaying 802.1X multiple-host configuration information, Mac Session max-age Seconds