Note

Configuring Port-Based Access Control (802.1X)

Configuring Switch Ports as 802.1X Authenticators

Configuring Switch Ports as 802.1X Authenticators

802.1X Authentication Commands

Page

 

 

[no] aaa port-access authenticator < [ethernet] < port-list>

8-15

[control quiet-period tx-period supplicant-timeout

8-15

server-timeout max-requests reauth-period auth-vid

 

unauth-vid initialize reauthenticate clear-statistics]

 

aaa authentication port-access

8-19

< local eap-radius chap-radius >

 

[no] aaa port-access authenticator active

8-15

[no] port-security [ethernet] < port-list> learn-mode port-access

8-32

802.1X Open VLAN Mode Commands

8-21

802.1X Supplicant Commands

8-34

802.1X-Related Show Commands

8-38

RADIUS server configuration

8-20

 

 

1. Enable 802.1X Authentication on Selected Ports

This task configures the individual ports you want to operate as 802.1X authenticators for point-to-point links to 802.1X-aware clients or switches. (Actual 802.1X operation does not commence until you perform step 5 on page 8-13 to activate 802.1X authentication on the switch.)

When you enable 802.1X authentication on a port, the switch automatically disables LACP on that port. However, if the port is already operating in an LACP trunk, you must remove the port from the trunk before you can configure it for 802.1X authentication.

8-15