HP GbE2c HP GbE2c Ethernet Blade Switch for c-Class BladeSystem Browser-based - Page 137

x Port Configuration, force-unauth

Page 137 highlights

802.1x Port Configuration To display the following form, go to the Switch Ports 802.1x Configuration form. Select a port number. The following table describes the Port 802.1x Configuration controls: Table 106 Port 802.1x Configuration controls Control Auth Mode Quiet Period (0-65535 sec) Tx Period (0-65535 sec) Max Req (1-10) Supplicant Timeout (0-65535 sec) Server Timeout (0-65535 sec) ReAuth Status ReAuth Period (1-604800 sec) Description Sets the type of access control for all ports: • force-unauth - the port is unauthorized unconditionally. • auto - the port is unauthorized until it is successfully authorized by the RADIUS server. • force-auth - the port is authorized unconditionally, allowing all traffic. The default value is force-auth. Sets the time, in seconds, the authenticator waits before transmitting an EAPRequest/ Identity frame to the supplicant (client) after an authentication failure in the previous round of authentication. The default value is 60 seconds. Sets the time, in seconds, the authenticator waits for an EAP-Response/Identity frame from the supplicant (client) before retransmitting an EAP-Request/Identity frame. The default value is 30 seconds. Sets the maximum number of times the authenticator retransmits an EAP-Request packet to the supplicant (client). The default value is 2. Sets the time, in seconds, the authenticator waits for an EAP-Response packet from the supplicant (client) before retransmitting the EAP-Request packet to the authentication server. The default value is 30 seconds. Sets the time, in seconds, the authenticator waits for a response from the Radius server before declaring an authentication timeout. The default value is 30 seconds. The time interval between transmissions of the RADIUS Access-Request packet containing the supplicant's (client's) EAP-Response packet is determined by the current setting of /cfg/sys/radius/timeout (default is 3 seconds). Sets the re-authentication status to on or off. The default value is off. Sets the time, in seconds, the authenticator waits before re-authenticating a supplicant (client) when periodic re-authentication is enabled. The default value is 3600 seconds. Configuring the switch 137

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209

Configuring the switch 137
802.1x Port Configuration
To display the following form, go to the Switch Ports 802.1x Configuration form. Select a port number.
The following table describes the Port 802.1x Configuration controls:
Table 106
Port 802.1x Configuration controls
Control
Description
Auth Mode
Sets the type of access control for all ports:
force-unauth
- the port is unauthorized unconditionally.
auto
- the port is unauthorized until it is successfully authorized by the
RADIUS server.
force-auth
- the port is authorized unconditionally, allowing all traffic.
The default value is
force-auth
.
Quiet Period (0-65535 sec)
Sets the time, in seconds, the authenticator waits before transmitting an EAP-
Request/ Identity frame to the supplicant (client) after an authentication failure in the
previous round of authentication. The default value is 60 seconds.
Tx Period (0-65535 sec)
Sets the time, in seconds, the authenticator waits for an EAP-Response/Identity
frame from the supplicant (client) before retransmitting an EAP-Request/Identity
frame. The default value is 30 seconds.
Max Req (1-10)
Sets the maximum number of times the authenticator retransmits an EAP-Request
packet to the supplicant (client). The default value is 2.
Supplicant Timeout
(0-65535 sec)
Sets the time, in seconds, the authenticator waits for an EAP-Response packet from
the supplicant (client) before retransmitting the EAP-Request packet to the
authentication server. The default value is 30 seconds.
Server Timeout
(0-65535 sec)
Sets the time, in seconds, the authenticator waits for a response from the Radius
server before declaring an authentication timeout. The default value is 30 seconds.
The time interval between transmissions of the RADIUS Access-Request packet
containing the supplicant’s (client’s) EAP-Response packet is determined by the
current setting of
/cfg/sys/radius/timeout
(default is 3 seconds).
ReAuth Status
Sets the re-authentication status to
on
or
off
. The default value is
off
.
ReAuth Period (1-604800 sec)
Sets the time, in seconds, the authenticator waits before re-authenticating a
supplicant (client) when periodic re-authentication is enabled. The default value is
3600 seconds.