HP StorageWorks 8/80 Brocade Converged Enhanced Ethernet Administrator's Guide - Page 141

Configuring 802.1x timeouts on specific interface ports, Disabling 802.1x on specific interface ports

Page 141 highlights

Interface-specific administrative tasks for 802.1x 10 2. Use the interface command to select the interface port to modify. switch(config)#interface tengigabitethernet 1/12 3. Use the dot1x port-control command to enable 802.1x authentication. switch(conf-if-te-1/12)#dot1x authentication 4. Enter the copy command to save the running-config file to the startup-config file. switch(conf-if-te-1/12)#exit switch(config)#end switch#copy running-config startup-config Configuring 802.1x timeouts on specific interface ports NOTE While you are free to modify the timeouts, Brocade recommends that you leave timeouts set to their default values. To configure 802.1x timeout attributes on a specific interface port, perform the following steps from Privileged EXEC mode. Repeat this task for each interface port you wish to modify. 1. Enter the configure terminal command to enter global configuration mode. 2. Use the interface command to select the interface port to modify. switch(config)#interface tengigabitethernet 1/12 3. Configure the timeout interval. Example of setting the timeout interval for an Extensible Authentication Protocol (EAP)-request frame. switch(conf-if-te-1/12)#dot1x timeout supp-timeout 40 Configuring 802.1x re-authentication on specific interface ports To configure 802.1x port re-authentication on a specific interface port, perform the following steps from Privileged EXEC mode. Repeat this task for each interface port you wish to modify. 1. Enter the configure terminal command to enter global configuration mode. 2. Use the interface command to select the interface port to modify. switch(config)#interface tengigabitethernet 1/12 3. Enable 802.1x authentication for the interface port. switch(conf-if-te-1/12)#dot1x enable 4. Configure reauthentication for the interface port. switch(conf-if-te-1/12)#dot1x reauthentication switch(conf-if-te-1/12)#dot1x timeout re-authperiod 4000 Disabling 802.1x on specific interface ports To disable 802.1x authentication on a specific interface port, perform the following steps from Privileged EXEC mode. Converged Enhanced Ethernet Administrator's Guide 121 53-1001346-01

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162

Converged Enhanced Ethernet Administrator’s Guide
121
53-1001346-01
Interface-specific administrative tasks for 802.1x
10
2.
Use the
interface
command to select the interface port to modify.
switch(config)#
interface tengigabitethernet 1/12
3.
Use the
dot1x port-control
command to enable 802.1x authentication.
switch(conf-if-te-1/12)#
dot1x authentication
4.
Enter the
copy
command to save the
running-config
file to the
startup-config
file.
switch(conf-if-te-1/12)#
exit
switch(config)#end
switch#
copy running-config startup-config
Configuring 802.1x timeouts on specific interface ports
NOTE
While you are free to modify the timeouts, Brocade recommends that you leave timeouts set to their
default values.
To configure 802.1x timeout attributes on a specific interface port, perform the following steps
from Privileged EXEC mode. Repeat this task for each interface port you wish to modify.
1.
Enter the
configure terminal
command to enter global configuration mode.
2.
Use the
interface
command to select the interface port to modify.
switch(config)#
interface tengigabitethernet 1/12
3.
Configure the timeout interval.
Example of setting the timeout interval for an Extensible Authentication Protocol (EAP)-request frame.
switch(conf-if-te-1/12)#
dot1x timeout supp-timeout 40
Configuring 802.1x re-authentication on specific interface ports
To configure 802.1x port re-authentication on a specific interface port, perform the following steps
from Privileged EXEC mode. Repeat this task for each interface port you wish to modify.
1.
Enter the
configure terminal
command to enter global configuration mode.
2.
Use the
interface
command to select the interface port to modify.
switch(config)#
interface tengigabitethernet 1/12
3.
Enable 802.1x authentication for the interface port.
switch(conf-if-te-1/12)#
dot1x enable
4.
Configure reauthentication for the interface port.
switch(conf-if-te-1/12)#
dot1x reauthentication
switch(conf-if-te-1/12)#
dot1x timeout re-authperiod 4000
Disabling 802.1x on specific interface ports
To disable 802.1x authentication on a specific interface port, perform the following steps from
Privileged EXEC mode.