802.1x Supplicant and Authenticator Switches with Network Edge Access Topology
(NEAT) 294
Voice Aware 802.1x Security 295
Common Session ID 296
How to Configure 802.1x Port-Based Authentication 296
Default 802.1x Authentication Configuration 296
802.1x Authentication Configuration Guidelines 298
802.1x Authentication 298
VLAN Assignment, Guest VLAN, Restricted VLAN, and Inaccessible Authentication
Bypass 299
MAC Authentication Bypass 300
Maximum Number of Allowed Devices Per Port 300
Configuring 802.1x Readiness Check 300
Configuring Voice Aware 802.1x Security 302
Configuring 802.1x Violation Modes 304
Configuring 802.1x Authentication 306
Configuring 802.1x Port-Based Authentication 307
Configuring the Switch-to-RADIUS-Server Communication 309
Configuring the Host Mode 311
Configuring Periodic Re-Authentication 312
Changing the Quiet Period 313
Changing the Switch-to-Client Retransmission Time 314
Setting the Switch-to-Client Frame-Retransmission Number 316
Setting the Re-Authentication Number 317
Enabling MAC Move 318
Enabling MAC Replace 319
Configuring 802.1x Accounting 321
Configuring a Guest VLAN 323
Configuring a Restricted VLAN 324
Configuring Number of Authentication Attempts on a Restricted VLAN 326
Configuring 802.1x Inaccessible Authentication Bypass with Critical Voice VLAN 328
Example of Configuring Inaccessible Authentication Bypass 331
Configuring 802.1x Authentication with WoL 332
Configuring MAC Authentication Bypass 333
Formatting a MAC Authentication Bypass Username and Password 334
Catalyst 2960-X Switch Security Configuration Guide, Cisco IOS Release 15.0(2)EX
xiv OL-29048-01
Contents