Field
Feature enabled
Number of Ports enabled
Port
Fail-Action
Fail-vlan
Dyn-vlan
MAC-filter
TABLE 60

Displaying multi-device port authentication information

The following table describes the output from the show auth-mac-address configuration command. Output from the show authenticated-mac-address configuration command

Description

Whether multi-device port authentication is enabled on the Brocade device.

The number of ports on which the multi-device port authentication feature is enabled.

Information for each multi-device port authentication-enabled port.

What happens to traffic from a MAC address for which RADIUS authentication has failed either block the traffic or assign the MAC address to a restricted VLAN.

The restricted VLAN to which non-authenticated MAC addresses are assigned, if the

Fail-Action is to assign the MAC address to a restricted VLAN.

Whether RADIUS dynamic VLAN assignment is enabled for the port.

Whether a MAC address filter has been applied to specify pre-authenticated MAC addresses.

Displaying multi-device port authentication information for a specific MAC address or port

To display authentication information for a specific MAC address or port, enter a command such as the following.

Brocade# show auth-mac-address 0000.000f.eaa1

-------------------------------------------------------------------------------

MAC/IP Address

Port

Vlan Authenticated Time Age CAM

 

 

Index

-------------------------------------------------------------------------------

0000.000f.eaa1 : 25.25.25.25

1/1/8

100 Yes

00d01h10m06s 0

N/A

Syntax: show auth-mac-address mac-addressip-addrport

The ip-addrvariable lists the MAC address associated with the specified IP address. Specify the port variable in stack-unit/slotnum/portnumformat.

The following table describes the information displayed by the show authenticated-mac-addresscommand for a specified MAC address or port.

TABLE 61 Output from the show authenticated-mac-addressaddress command

FieldDescription

MAC/IP Address

The MAC address for which information is displayed. If the packet for which multi-device

 

port authentication was performed also contained an IP address, then the IP address is

 

displayed as well.

 

 

Port

The port on which the MAC address was learned.

 

 

Vlan

The VLAN to which the MAC address was assigned.

 

 

Authenticated

Whether the MAC address was authenticated.

254

Brocade ICX 6650 Security Configuration Guide

 

53-1002601-01

Page 274
Image 274
Brocade Communications Systems 6650 manual Syntax show auth-mac-address mac-addressip-addrport, FieldDescription