3Com 3.01.01 Switch User Manual


 
270 CHAPTER 9: AAA AND RADIUS OPERATION
EAP relay — the switch sends authentication information to the RADIUS server
in the form of EAP packets, directly, so that the RADIUS server never supports
EAP authentication
Perform the following configurations in system view.
Setting the Maximum Retransmission Times
The following commands are used for setting the maximum
authenticator-to-supplicant frame-retransmission times.
Perform the following configurations in system view.
By default, the max-retry-value is 3. That is, the switch can retransmit the
authentication request frame to a supplicant 3 times at most.
Setting the Handshake Period of 802.1x
The following commands are used to set the handshake period of 802.1x. After
setting the handshake-period, the system will send the handshake packets by the
period set. If the dot1x retry time is configured as N, the system considers the user
logged off and sets the user in logoff stat if it does not receive a response from the
user N times, consecutively.
Perform the following configurations in system view.
By default, the handshake period is 15 seconds.
Configuring Timers
The following commands are used for configuring the 802.1x timers.
Table 7 Configure the Authentication Method for 802.1x Users
Operation Command
Configure the authentication method for
802.1x users
dot1x authentication-method { chap | pap
| eap md5-challenge}
Restore the default authentication method for
802.1x users
undo dot1x authentication-method
Table 8 Set the Maximum Retransmission Times
Operation Command
Set the maximum retransmission times dot1x retry max-retry-value
Restore the default maximum retransmission
times
undo dot1x retry
Table 9 Set the Handshake Period of 802.1x
Operation Command
Set the handshake period of 802.1x dot1x timer handshake-period interval
Restore the handshake period to the default
value
undo dot1x timer handshake-period