Chapter 63: 802.1x Port-based Network Access Control Commands
964
“AUTH-MAC REAUTH-
RELEARNING” on page 978
Port Interface Sets the MAC address learning of the
supplicant (client device) to relearning
for re-authentication on the interface
specified in the Interface command
mode.
“DOT1X CONTROL-DIRECTION” on
page 979
Port Interface Sets the direction of the filter for the
unauthorized interface.
“DOT1X EAP” on page 981 Global
Configuration
Controls the action of the switch to
EAP packets when 802.1x
authentication is disabled on the
switch.
“DOT1X INITIALIZE INTERFACE” on
page 983
Port Interface Forces authenticator ports into the
unauthorized state and initializes
authentication.
“DOT1X MAX-REAUTH-REQ” on
page 984
Port Interface Specifies the maximum number of
times authenticator ports transmit
EAP Request packets to supplicants
before timing out authentication
sessions.
“DOT1X PORT-CONTROL AUTO” on
page 985
Port Interface Sets ports to the authenticator role.
“DOT1X PORT-CONTROL FORCE-
AUTHORIZED” on page 986
Port Interface Configures ports to the 802.1x port-
based authenticator role in the forced-
authorized state.
“DOT1X PORT-CONTROL FORCE-
UNAUTHORIZED” on page 987
Port Interface Configures ports to the 802.1x port-
based authenticator role in the forced-
unauthorized state.
“DOT1X TIMEOUT TX-PERIOD” on
page 988
Port Interface Sets the amount of time the switch
waits for a reply from a supplicant to
an EAP-request/identity frame.
“NO AAA AUTHENTICATION DOT1X
DEFAULT GROUP RADIUS” on
page 989
Global
Configuration
Disables 802.1x port-based network
access control on the switch.
“NO AUTH DYNAMIC-VLAN-
CREATION” on page 990
Port Interface Disables dynamic VLAN assignments
of authenticator ports.
“NO AUTH GUEST-VLAN” on
page 991
Port Interface Disables the Guest VLAN feature on
an authenticator port.
Table 88. 802.1x Port-based Network Access Control Commands (Continued)
Command Mode Description