Web and MAC Authentication for the Series 2600/2600-PWR and 2800 Switches

Configuring MAC Authentication on the Switch

Syntax: aaa port-access mac-based [e] < port-list> [quiet-period <1 - 65535>]

Specifies the time period, in seconds, the switch should wait before attempting an authentication request for a MAC address that failed authentication.

(Default: 60 seconds)

Syntax: aaa port-access mac-based [e] < port-list> [reauth-period <0 - 9999999>]

Specifies the time period, in seconds, the switch enforces on a client to re-authenticate. When set to 0, reauthentication is disabled. (Default: 300 seconds)

Syntax: aaa port-access mac-based [e] < port-list> [reauthenticate]

Forces a reauthentication of all attached clients on the port.

Syntax: aaa port-access mac-based [e] < port-list> [server-timeout <1 - 300>]

Specifies the period, in seconds, the switch waits for a server response to an authentication request. Depending on the current max-requestsvalue, the switch sends a new attempt or ends the authentication session.

(Default: 30seconds)

Syntax: aaa port-access mac-based [e] < port-list> [unauth-vid <vid>] no aaa port-access mac-based [e] < port-list> [unauth-vid]

Specifies the VLAN to use for a client that fails authen- tication. If unauth-vidis 0, no VLAN changes occur.

Use the no form of the command to set the unauth-vidto 0. (Default: 0)

3-25