Cisco HWIC-4ESW User Guide - Page 6

How to Con EtherSwitch HWICs - configuration

Page 6 highlights

How to Configure EtherSwitch HWICs Cisco HWIC-4ESW and HWIC-D-9ESW EtherSwitch Interface Cards Table 1 Default 802.1x Configuration (continued) Feature Client timeout period Authentication server timeout period Default Setting 30 seconds (when relaying a request from the authentication server to the client, the amount of time the switch waits for a response before retransmitting the request to the client). This setting is not configurable. 30 seconds (when relaying a response from the client to the authentication server, the amount of time the switch waits for a reply before retransmitting the response to the server). This setting is not configurable. 802.1x Configuration Guidelines These are the 802.1x authentication configuration guidelines: • When the 802.1x protocol is enabled, ports are authenticated before any other Layer 2 feature is enabled. • The 802.1x protocol is supported on Layer 2 static-access ports, but it is not supported on these port types: - Trunk port-If you try to enable 802.1x on a trunk port, an error message appears, and 802.1x is not enabled. If you try to change the mode of an 802.1x-enabled port to trunk, the port mode is not changed. - Switch Port Analyzer (SPAN) destination port-You can enable 802.1x on a port that is a SPAN destination port; however, 802.1x is disabled until the port is removed as a SPAN destination. You can enable 802.1x on a SPAN source port. How to Configure EtherSwitch HWICs • Configuring VLANs, page 5 • Configuring VLAN Trunking Protocol, page 7 • Configuring Layer 2 Interfaces, page 10 • Configuring 802.1x Authentication, page 18 • Configuring Spanning Tree, page 30 • Configuring MAC Table Manipulation, page 39 • Configuring Cisco Discovery Protocol, page 41 • Configuring the Switched Port Analyzer (SPAN), page 44 • Configuring Power Management on the Interface, page 46 • Configuring IP Multicast Layer 3 Switching, page 47 • Configuring IGMP Snooping, page 51 • Configuring Per-Port Storm Control, page 56 • Configuring Stacking, page 59 • Configuring Fallback Bridging, page 61 • Configuring Separate Voice and Data Subnets, page 76 6

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104

Cisco HWIC-4ESW and HWIC-D-9ESW EtherSwitch Interface Cards
How to Configure EtherSwitch HWICs
6
802.1x Configuration Guidelines
These are the 802.1x authentication configuration guidelines:
When the 802.1x protocol is enabled, ports are authenticated before any other Layer 2 feature is
enabled.
The 802.1x protocol is supported on Layer 2 static-access ports, but it is not supported on these port
types:
Trunk port—If you try to enable 802.1x on a trunk port, an error message appears, and 802.1x
is not enabled. If you try to change the mode of an 802.1x-enabled port to trunk, the port mode
is not changed.
Switch Port Analyzer (SPAN) destination port—You can enable 802.1x on a port that is a SPAN
destination port; however, 802.1x is disabled until the port is removed as a SPAN destination.
You can enable 802.1x on a SPAN source port.
How to Configure EtherSwitch HWICs
Configuring VLANs, page 5
Configuring VLAN Trunking Protocol, page 7
Configuring Layer 2 Interfaces, page 10
Configuring 802.1x Authentication, page 18
Configuring Spanning Tree, page 30
Configuring MAC Table Manipulation, page 39
Configuring Cisco Discovery Protocol, page 41
Configuring the Switched Port Analyzer (SPAN), page 44
Configuring Power Management on the Interface, page 46
Configuring IP Multicast Layer 3 Switching, page 47
Configuring IGMP Snooping, page 51
Configuring Per-Port Storm Control, page 56
Configuring Stacking, page 59
Configuring Fallback Bridging, page 61
Configuring Separate Voice and Data Subnets, page 76
Client timeout period
30 seconds (when relaying a request from the
authentication server to the client, the amount of time the
switch waits for a response before retransmitting the
request to the client). This setting is not configurable.
Authentication server timeout period
30 seconds (when relaying a response from the client to
the authentication server, the amount of time the switch
waits for a reply before retransmitting the response to the
server). This setting is not configurable.
Table 1
Default 802.1x Configuration (continued)
Feature
Default Setting