xStack DGS-3600 Series Layer 3 Gigabit Ethernet Managed Switch CLI Manual
209
show 802.1x auth_configuration
switch number 1, port 3. 2:4 specifies switch number 2, port 4. 1:3-2:4 specifies all
of the ports between switch 1, port 3 and switch 2, port 4 − in numerical order. Non-
contiguous portlist entries are separated by a comma. (ex: 1:1-1:3,1:7-1:9)
all – Specify to view all ports.
The following details are displayed:
802.1x Enabled / Disabled − Shows the current status of 802.1x functions on the
Switch.
Authentication Mode – Shows the authentication mode, whether it be by MAC
address or by port.
Authentication Protocol: Radius_Eap − Shows the authentication protocol suite in
use between the Switch and a RADIUS server. May read Radius_Eap or
Radius_Pap.
Port number − Shows the physical port number on the Switch.
Capability: Authenticator/None − Shows the capability of 802.1x functions on the
port number displayed above. There are two 802.1x capabilities that can be set on
the Switch: Authenticator and None.
AdminCtlDir: Both / In − Shows whether a controlled Port that is unauthorized will
exert control over communication in both receiving and transmitting directions, or
just the receiving direction.
OpenCtlDir: Both / In − Shows whether a controlled Port that is unauthorized will
exert control over communication in both receiving and transmitting directions, or
just the receiving direction.
Port Control: ForceAuth / ForceUnauth / Auto − Shows the administrative control
over the port’s authorization status. ForceAuth forces the Authenticator of the port
to become Authorized. ForceUnauth forces the port to become Unauthorized.
QuietPeriod − Shows the time interval between authentication failure and the start
of a new authentication attempt.
TxPeriod − Shows the time to wait for a response from a supplicant (user) to send
EAP Request / Identity packets.
SuppTimeout − Shows the time to wait for a response from a supplicant (user) for
all EAP packets, except for the Request / Identity packets.
ServerTimeout − Shows the length of time to wait for a response from a Radius
server.
MaxReq − Shows the maximum number of times to retry sending packets to the
supplicant.
ReAuthPeriod − Shows the time interval between successive re-authentications.
ReAuthenticate: Enabled / Disabled − Shows whether or not to re-authenticate.
Restrictions None.
Example usage:
To display the 802.1x authentication states:
DGS-3600:4#show 802.1x auth_configuration ports 1
Command: show 802.1x auth_configuration ports 1
802.1X : Enabled
Authentication Mode : Port_based
Authentication Protocol : Radius_EAP
Port number : 1:1
Capability : None
AdminCrlDir : Both
OpenCrlDir : Both
Port Control : Auto
QuietPeriod : 60 sec
TxPeriod : 30 sec