password for port-access2-11,2-21 port, supplicant … 10-16port-based

access … 10-4

client without authentication … 10-5 effect of Web/MAC auth operation … 10-13 enable … 10-19,10-46

latest client, effect … 10-5 multiple client access … 10-6 multiple clients authenticating … 10-5 no client limit … 10-4

open port … 10-4 operation … 10-5 recommended use … 10-5 return to … 10-20

single client authenticates … 10-5 tagged VLAN membership … 10-5 unauthorized client risk … 10-6 untagged VLAN membership … 10-5,10-30 with Web/MAC authentication … 10-6See also user-based.

port-security10-42port-security use … 10-6port-security, with 802.1X … 10-45 priority of VLAN, per-port10-10,10-30 PVID … 10-62

quiet-period10-22 RADIUS … 10-3

effect on VLAN operation … 10-65,10-66 host IP address … 10-25

VLAN assignment … 10-36rate-limit override … 10-60 reauthenticate … 10-26reauth-period10-23

rules of operation … 10-12

security credentials saved to configuration file … 2-14,2-21

server-timeout10-22 show commands … 10-51

show commands, supplicant … 10-64 statistics … 10-51

supplicant

client not using … 10-34 configuring switch port … 10-49 enabling switch port … 10-49 identity option … 10-49 secret … 10-49

switch port operating as … 10-47

supplicant state … 10-64 supplicant statistics, note … 10-64 supplicant, configuring … 10-47supplicant-timeout10-22 terminology … 10-6

traffic flow on unathenticated ports … 10-27 troubleshooting, gvrp … 10-65,10-66,10-67 trunked port blocked … 10-13

tx-period10-22 unauthenticated port … 10-26 unauthorized … 10-21unauthorized-Client VLAN … 10-23unauthorized-client VLAN, defined … 10-8unauthorized-Client VLAN, multiple

clients … 10-39unauth-period10-23unauth-period command … 10-33unauth-vid10-23

use model, open VLAN mode … 10-31 used with port-security10-45user-based

access … 10-4 authentication … 10-10 client authentication … 10-5 client limit … 10-3,10-4,10-46client-limit, enable … 10-20 clients use same VLAN … 10-30 convert to port-based10-20 enable … 10-19,10-46

limit … 10-4

limit for web auth, MAC auth … 10-20 tagged VLAN … 10-5

VLAN … 10-38,10-39

Web/MAC authenticated clients … 10-5See also port-based.

user-based vs. port-based10-16

VLAN

authorized-client10-35,10-36,10-37 guest … 10-36

RADIUS assigned, effect … 10-38 RADIUS override … 10-35RADIUS-assigned10-36 tagged … 10-33,10-34 temporary membership … 10-36unauthorized-client10-36,10-37unauthorized-client, best use … 10-39unauthorized-client, caution … 10-37unauthorized-client, on different

2 – Index