Dell PowerConnect 5448 User's Guide - Page 247

The following table summarizes the equivalent CLI commands for enabling the port based

Page 247 highlights

Enabling Port Based Authentication Using the CLI Commands The following table summarizes the equivalent CLI commands for enabling the port based authentication as displayed in the Port Based Authentication page. Table 7-1. Port Authentication CLI Commands CLI Command Description aaa authentication dot1x default method1 [method2.] Specifies one or more authentication, authorization, and accounting (AAA) methods for use on interfaces running IEEE 802.1X. dot1x auth-not-req Enables authorized devices access to the VLAN. dot1x guest-vlan Defines a Guest VLAN. dot1x guest vlan enable Enables authorized users on the inteface to access the Guest VLAN. dot1x mac-authentication Enables authentication based on the station's MAC address (MAC based authentication). dot1x max-req count Sets the maximum number of times that the device sends an EAP to the client, before restarting the authentication process. dot1x re-authenticate [ethernet interface] Manually initiates a re-authentication of all 802.1X-enabled ports or the specified 802.1X-enabled port. dot1x re-authentication Enables periodic re-authentication of the client. dot1x timeout quiet-period seconds Sets the number of seconds that the device remains in the quiet state following a failed authentication exchange. dot1x timeout re-authperiod seconds Sets the number of seconds between re-authentication attempts. dot1x timeout server-timeout seconds Sets the time for the retransmission of packets to the authentication server. dot1x timeout supp-timeout seconds Sets the time for the retransmission of an EAP request frame to the client. dot1x timeout tx-period seconds Sets the number of seconds that the device waits for a response to an EAP - request/identity frame, from the client, before resending the request. dot1x traps mac-authentication failure Enables sending traps when the MAC address failed authenticaiton (MAC based authentication). dot1x radius-attribues vlan Enables user-based VLAN assignment. show dot1x [ethernet interface] Displays 802.1X status for the device or for the specified interface. show dot1x advanced Displays 802.1X advanced features for the switch or specified interface. show dot1x users [username username] Displays 802.1X users for the device. Configuring Device Information 247

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355
  • 356
  • 357
  • 358
  • 359
  • 360
  • 361
  • 362
  • 363
  • 364
  • 365
  • 366
  • 367
  • 368
  • 369
  • 370
  • 371
  • 372
  • 373
  • 374
  • 375
  • 376
  • 377
  • 378
  • 379
  • 380
  • 381
  • 382
  • 383
  • 384
  • 385
  • 386
  • 387
  • 388
  • 389
  • 390
  • 391
  • 392
  • 393
  • 394
  • 395
  • 396
  • 397
  • 398
  • 399
  • 400
  • 401
  • 402
  • 403
  • 404
  • 405
  • 406
  • 407
  • 408
  • 409
  • 410
  • 411
  • 412
  • 413
  • 414
  • 415
  • 416
  • 417
  • 418
  • 419
  • 420
  • 421
  • 422
  • 423
  • 424
  • 425
  • 426
  • 427
  • 428
  • 429
  • 430
  • 431
  • 432
  • 433
  • 434
  • 435
  • 436
  • 437
  • 438
  • 439
  • 440
  • 441
  • 442
  • 443
  • 444

Configuring Device Information
247
Enabling Port Based Authentication Using the CLI Commands
The following table summarizes the equivalent CLI commands for enabling the port based
authentication as displayed in the
Port Based Authentication
page.
Table 7-1.
Port Authentication CLI Commands
CLI Command
Description
aaa authentication dot1x default
method1
[
method2
.]
Specifies one or more authentication, authorization, and accounting (AAA)
methods for use on interfaces running IEEE 802.1X.
dot1x auth-not-req
Enables authorized devices access to the VLAN.
dot1x guest-vlan
Defines a Guest VLAN.
dot1x guest vlan enable
Enables authorized users on the inteface to access the Guest VLAN.
dot1x mac-authentication
Enables authentication based on the station’s MAC address (MAC based
authentication).
dot1x max-req
count
Sets the maximum number of times that the
device
sends an EAP to the
client, before restarting the authentication process.
dot1x re-authenticate
[
ethernet
interface
]
Manually initiates a re-authentication of all 802.1X-enabled ports or the
specified 802.1X-enabled port.
dot1x re-authentication
Enables periodic re-authentication of the client.
dot1x timeout quiet-period
seconds
Sets the number of seconds that the
device
remains in the quiet state
following a failed authentication exchange.
dot1x timeout re-authperiod
seconds
Sets the number of seconds between re-authentication attempts.
dot1x timeout server-timeout
seconds
Sets the time for the retransmission of packets to the authentication server.
dot1x timeout supp-timeout
seconds
Sets the time for the retransmission of an EAP request frame to the client.
dot1x timeout tx-period
seconds
Sets the number of seconds that the
device
waits for a response to an
EAP - request/identity frame, from the client, before resending the request.
dot1x traps mac-authentication
failure
Enables sending traps when the MAC address failed authenticaiton
(MAC based authentication).
dot1x radius-attribues vlan
Enables user-based VLAN assignment.
show dot1x
[
ethernet
interface
]
Displays 802.1X status for the
device
or for the specified interface.
show dot1x advanced
Displays 802.1X advanced features for the switch or specified interface.
show dot1x users
[
username
username
]
Displays 802.1X users for the
device
.