Cisco Systems OL-6244-01 Switch User Manual


  Open as PDF
of 1438
 
2-307
Catalyst 6500 Series Switch Command Reference—Release 8.4
OL-6244-01
Chapter 2 Catalyst 6500 Series Switch and ROM Monitor Commands
set dot1x
set dot1x
To configure 802.1X on a system, use the set dot1x command.
set dot1x system-auth-control {enable | disable}
set dot1x {quiet-period | tx-period | re-authperiod} seconds
set dot1x {supp-timeout | server-timeout} seconds
set dot1x max-req count
set dot1x shutdown-timeout seconds
set dot1x vlan-group vlan_group_name vlan
set dot1x radius-accounting {enable | disable}
set dot1x radius-vlan-assignment {enable | disable}
set dot1x radius-keepalive {enable | disable}
Syntax Description system-auth-control Specifies authentication for the system.
enable Enables the specified 802.1X function.
disable Disables the specified 802.1X function.
quiet-period seconds Specifies the idle time between authentication attempts; valid values are
from 0 to 65535 seconds.
tx-period seconds Specifies the time for the retransmission of EAP-Request/Identity frame;
valid values are from 0 to 65535 seconds. See the “Usage Guidelines”
section for additional information.
re-authperiod seconds Specifies the time constant for the retransmission reauthentication time; valid
values are from 1 to 65535 seconds.
supp-timeout seconds Specifies the time constant for the retransmission of EAP-Request packets;
valid values are from 0 to 65535 seconds. See the “Usage Guidelines”
section for additional information.
server-timeout seconds Specifies the time constant for the retransmission of packets by the backend
authenticator to the authentication server; valid values are from 1 to
65535 seconds. See the “Usage Guidelines” section for additional
information.
max-req count Specifies the maximum number of times that the state machine retransmits
an EAP-Request frame to the supplicant before it times out the
authentication session; valid values are from 1 to 10.
shutdown-timeout
seconds
Specifies the amount time that a port is shut down after a security violation;
valid values are from 1 to 65535 seconds. See the “Usage Guidelines”
section for additional information.
vlan-group Specifies the VLAN group name.
vlan_group_name Name of the VLAN group.
vlan VLAN number; valid values are from 1 to 4094.
radius-accounting Specifies 802.1X RADIUS accounting and tracking.