Index

Numerics

3DES 8-3

802.1X

ACL, effect on … 9-16

802.1X access control

authenticate users … 12-5,12-4,12-6,12-4,12-20 backend state … 12-62

operation … 12-9

show commands … 12-53,12-62 unblock port … 12-6

12-6,12-25,12-22

blocked port, trunked … 12-13

caution, unauthorized-client VLAN … 12-39 CHAP … 12-3

chap-radius12-26,12-28,12-39,12-21 commands … 12-19

displaying configuration … 12-53 overview … 12-18

port … 12-20

12-26,12-12,12-22,12-21 CoS override … 12-62 counters … 12-53

delay move to unauthorized-client VLAN … 12-35,12-25

DHCP server … 12-40

display all 802.1X, Web, and MAC authentication configuration … 3-13,12-55,12-56,12-58,12-59

EAP … 12-3,12-7,12-57

eap-radius12-26,12-28,12-20,12-27,12-75 features … 12-3,12-22,12-63,12-22,12-63 general setup … 12-15,12-7,12-8,12-31,12-38 GVRP … 12-67,12-69

effect … 12-69,12-74

hierarchy of precedence in authentication session … 1-19

initialize … 12-28

LACP not allowed … 12-75 local … 12-26,12-25max-requests12-23,12-24 MD5 … 12-7,12-50 messages … 12-75,12-39,12-5 open port … 12-4

authorized client … 12-33

configuration … 12-43,12-45 general operation … 12-31 mode … 12-31,12-37 operating notes … 12-46,12-38 PVID, no … 12-62

security breach … 12-46,12-42,12-56,12-62,12-63

unauthorized client … 12-33

VLAN, after authentication … 12-33,12-39,12-46,12-33,12-34,12-39,12-46,12-65

12-3

password for port-access2-12,2-21,12-17 access … 12-4

client without authentication … 12-5

effect of Web/MAC auth operation … 12-13,12-20,12-48

latest client, effect … 12-5 multiple client access … 12-6,12-5 no client limit … 12-4

open port … 12-4,12-5 recommended use … 12-5,12-21 single client authenticates … 12-5 tagged VLAN membership … 12-5 unauthorized client risk … 12-6,12-5,12-32 with Web/MAC authentication … 12-6See also user-based.

12-44,12-6,12-47,12-10,12-32 PVID … 12-64

quiet-period12-23,12-24 RADIUS … 12-3

effect on VLAN operation … 12-67,12-68 host IP address … 12-27

VLAN assignment … 12-38

rate-limit override … 12-62,12-28,12-25,12-12 security credentials saved to configuration

file … 2-15,2-21,12-23,12-24,12-53,12-66,12-53

client not using … 12-36,12-51 enabling switch port … 12-51 identity option … 12-51 secret … 12-51,12-49

12-66,12-49,12-23,12-24

Index – 1