D-Link DES-3026 Reference Manual - Page 169

X Commands

Page 169 highlights

DES-3000 Series Layer 2 Switch CLI Reference Manual 22 802.1X COMMANDS The DES-3026 implements the server-side of the IEEE 802.1x Port-based and MAC-based Network Access Control. This mechanism is intended to allow only authorized users, or other network devices, access to network resources by establishing criteria for each port on the Switch that a user or network device must meet before allowing that port to forward or receive frames. Command enable 802.1x disable 802.1x config 802.1x auth_mode show 802.1x auth_state show 802.1x auth_configuration config 802.1x capability config 802.1x auth_parameter ports config 802.1x auth_protocol config 802.1x init config 802.1x reauth config radius add config radius delete config radius show radius create 802.1x user delete 802.1x user show 802.1x user show acct_client show auth_client show auth_diagnostics show auth_session_statistics show auth_statistics Parameters [port_based | mac_based] {ports } {ports } ports [ | all] [authenticator | none] [ | all] [default | {direction [both | in] | port_control [force_unauth | auto | force_auth] | quiet_period | tx_period | supp_timeout | server_timeout | max_req | reauth_period | enable_reauth [enable | disable]}] [local | radius_eap] [port_based ports [ | all] | mac_based [ports] [ | all] {mac_address }] [port_based ports [ | all] [ | all] {mac_address }] key [default {auth_port | acct_port }] key [default | {auth_port | acct_port ]} {ports [ | all]} {ports [ | all]} {ports [ | all]} Each command is listed, in detail, in the following sections. 165

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218

DES-3000 Series Layer 2 Switch CLI Reference Manual
22
802.1X C
OMMANDS
The DES-3026 implements the server-side of the IEEE 802.1x Port-based and MAC-based Network Access Control. This
mechanism is intended to allow only authorized users, or other network devices, access to network resources by establishing
criteria for each port on the Switch that a user or network device must meet before allowing that port to forward or receive
frames.
Command
Parameters
enable 802.1x
disable 802.1x
config 802.1x auth_mode
[port_based | mac_based]
show 802.1x auth_state
{ports <portlist>}
show 802.1x
auth_configuration
{ports <portlist>}
config 802.1x capability
ports [<portlist> | all] [authenticator | none]
[<portlist> | all] [default | {direction [both | in] | port_control [force_unauth | auto |
force_auth] | quiet_period <sec 0-65535> | tx_period <sec 1-65535> |
supp_timeout <sec 1-65535> | server_timeout <sec 1-65535> | max_req <value
1-10> | reauth_period <sec 1-65535> | enable_reauth [enable | disable]}]
config 802.1x auth_protocol
[local | radius_eap]
config 802.1x init
[port_based ports [<portlist> | all] | mac_based [ports] [<portlist> | all]
{mac_address <macaddr>}]
config 802.1x reauth
[port_based ports [<portlist> | all] [<portlist> | all] {mac_address <macaddr>}]
config radius add
<server_index 1-3> <server_ip> key <passwd 32> [default {auth_port
<udp_port_number 1-65535> | acct_port <udp_port_number 1-65535>}]
config radius delete
<server_index 1-3>
config radius
<server_index 1-3> <server_ip> key <passwd 32> [default | {auth_port
<udp_port_number 1-65535> | acct_port <udp_port_number 1-65535>]}
show radius
create 802.1x user
<username 15>
delete 802.1x user
<username 15>
show 802.1x user
show acct_client
show auth_client
show auth_diagnostics
{ports [<portlist> | all]}
show
auth_session_statistics
{ports [<portlist> | all]}
show auth_statistics
{ports [<portlist> | all]}
config 802.1x
auth_parameter ports
Each command is listed, in detail, in the following sections.
165