Cisco NME-16ES-1G User Guide - Page 135
Enabling 802.1x Authentication Example, Configuring the Switch-to-RADIUS-Server Communication Example
UPC - 882658036101
View all Cisco NME-16ES-1G manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 135 highlights
16- and 36-Port Ethernet Switch Module for Cisco 2600 Series, Cisco 3600 Series, and Cisco 3700 Series Configuration Examples for the 16- and 36-Port Ethernet Switch Module • Setting the Switch-to-Client Frame-Retransmission Number Example, page 135 • Enabling Multiple Hosts Example, page 135 Enabling 802.1x Authentication Example The following example shows how to enable AAA and 802.1x on Fast Ethernet port 0/1: Switch# configure terminal Switch(config)# aaa new-model Switch(config)# aaa authentication dot1x default group radius Switch(config)# interface fastethernet0/1 Switch(config-if)# dot1x port-control auto Switch(config-if)# end Configuring the Switch-to-RADIUS-Server Communication Example The following example shows how to specify the server with IP address 172.20.39.46 as the RADIUS server, to use port 1612 as the authorization port, and to set the encryption key to rad123, matching the key on the RADIUS server: Switch(config)# radius-server host 172.l20.39.46 auth-port 1612 key rad123 Enabling Periodic Re-Authentication Example The following example shows how to enable periodic reauthentication and set the number of seconds between reauthentication attempts to 4000: Switch(config)# dot1x re-authentication Switch(config)# dot1x timeout re-authperiod 4000 Changing the Quiet Period Example The following example shows how to set the quiet time on the switch to 30 seconds: Switch(config)# dot1x timeout quiet-period 30 Changing the Switch-to-Client Retransmission Time Example The following example shows how to set 60 seconds as the number of seconds that the switch waits for a response to an EAP-request/identity frame from the client before retransmitting the request: Switch(config)# dot1x timeout tx-period 60 Setting the Switch-to-Client Frame-Retransmission Number Example The following example shows how to set 5 as the number of times that the switch sends an EAP-request/identity request before restarting the authentication process: Switch(config)# dot1x max-req 5 Enabling Multiple Hosts Example The following example shows how to enable 802.1x on Fast Ethernet interface 0/1 and to allow multiple hosts: Cisco IOS Release 12.2(2)XT, 12.2(8)T, and 12.2(15)ZJ 135