D-Link DES-3026 Reference Manual - Page 173

show 802.1x, auth_configuration

Page 173 highlights

DES-3000 Series Layer 2 Switch CLI Reference Manual show 802.1x auth_configuration Purpose Used to display the current configuration of the 802.1x server on the Switch. Syntax show 802.1x auth_configuration {ports } Description The show 802.1x command is used to display the current configuration of the 802.1x Portbased Network Access Control server application on the Switch. The following details what is displayed: 802.1x Enabled/Disabled − Shows the current status of 802.1x functions on the Switch. Authentication Protocol: Radius_Eap − Shows the authentication protocol suite in use between the Switch and a RADIUS server. Port number − Shows the physical port number on the Switch. Capability: Authenticator/None − Shows the capability of 802.1x functions on the port number displayed above. There are four 802.1x capabilities that can be set on the Switch: Authenticator, Supplicant, Authenticator and Supplicant, and None. Port Status: Authorized/Unauthorized − Shows the result of the authentication process. Authorized means that the user was authenticated, and can access the network. Unauthorized means that the user was not authenticated, and can not access the network. PAE State: Initialize/Disconnected/Connecting/ Authenticating/Authenticated/Held /ForceAuth/ForceUnauth − Shows the current state of the Authenticator PAE. Backend State: Request/Response/Fail/Idle/Initialize − Shows the current state of the Backend Authenticator. AdminCtlDir: Both/In − Shows whether a controlled Port that is unauthorized will exert control over communication in both receiving and transmitting directions, or just the receiving direction. OpenCtlDir: Both/In − Shows whether a controlled Port that is unauthorized will exert control over communication in both receiving and transmitting directions, or just the receiving direction. Port Control: ForceAuth/ForceUnauth/Auto − Shows the administrative control over the port's authorization status. ForceAuth forces the Authenticator of the port to become Authorized. ForceUnauth forces the port to become Unauthorized. QuietPeriod − Shows the time interval between authentication failure and the start of a new authentication attempt. TxPeriod − Shows the time to wait for a response from a supplicant (user) to send EAP Request/Identity packets. SuppTimeout − Shows the time to wait for a response from a supplicant (user) for all EAP packets, except for the Request/Identity packets. ServerTimeout − Shows the length of time to wait for a response from a RADIUS server. MaxReq − Shows the maximum number of times to retry sending packets to the supplicant. ReAuthPeriod − Shows the time interval between successive re-authentications. ReAuthenticate: Enabled/Disabled − Shows whether or not to re-authenticate. Parameters ports − Specifies a port or range of ports to be viewed. Restrictions Only administrator-level users can issue this command. 169

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218

DES-3000 Series Layer 2 Switch CLI Reference Manual
show 802.1x
auth_configuration
Purpose
Used to display the current configuration of the 802.1x server on the Switch.
Syntax
show 802.1x auth_configuration {ports <portlist>}
Description
The show 802.1x command is used to display the current configuration of the 802.1x Port-
based Network Access Control server application on the Switch.
The following details what is displayed:
802.1x Enabled/Disabled
Shows the current status of 802.1x functions on the Switch.
Authentication Protocol: Radius_Eap
Shows the authentication protocol suite in use
between the Switch and a RADIUS server.
Port number
Shows the physical port number on the Switch.
Capability: Authenticator/None
Shows the capability of 802.1x functions on the port number
displayed above.
There are four 802.1x capabilities that can be set on the Switch:
Authenticator, Supplicant, Authenticator and Supplicant, and None.
Port Status: Authorized/Unauthorized
Shows the result of the authentication process.
Authorized means that the user was authenticated, and can access the network.
Unauthorized means that the user was not authenticated, and can not access the network.
PAE State: Initialize/Disconnected/Connecting/ Authenticating/Authenticated/Held
/ForceAuth/ForceUnauth
Shows the current state of the Authenticator PAE.
Backend State: Request/Response/Fail/Idle/Initialize
Shows the current state of the
Backend Authenticator.
AdminCtlDir: Both/In
Shows whether a controlled Port that is unauthorized will exert control
over communication in both receiving and transmitting directions, or just the receiving
direction.
OpenCtlDir: Both/In
Shows whether a controlled Port that is unauthorized will exert control
over communication in both receiving and transmitting directions, or just the receiving
direction.
Port Control: ForceAuth/ForceUnauth/Auto
Shows the administrative control over the port’s
authorization status. ForceAuth forces the Authenticator of the port to become Authorized.
ForceUnauth forces the port to become Unauthorized.
QuietPeriod
Shows the time interval between authentication failure and the start of a new
authentication attempt.
TxPeriod
Shows the time to wait for a response from a supplicant (user) to send EAP
Request/Identity packets.
SuppTimeout
Shows the time to wait for a response from a supplicant (user) for all EAP
packets, except for the Request/Identity packets.
ServerTimeout
Shows the length of time to wait for a response from a RADIUS server.
MaxReq
Shows the maximum number of times to retry sending packets to the supplicant.
ReAuthPeriod
Shows the time interval between successive re-authentications.
ReAuthenticate: Enabled/Disabled
Shows whether or not to re-authenticate.
Parameters
ports <portlist>
Specifies a port or range of ports to be viewed.
Only administrator-level users can issue this command.
Restrictions
169