10-34
Catalyst 3750-E and 3560-E Switch Software Configuration Guide
OL-9775-08
Chapter 10 Configuring IEEE 802.1x Port-Based Authentication
Configuring 802.1x Authentication
• Enabling MAC Move, page 10-49 (optional)
• Enabling MAC Replace, page 10-49
• Configuring 802.1x Accounting, page 10-50 (optional)
• Configuring a Guest VLAN, page 10-51 (optional)
• Configuring a Restricted VLAN, page 10-52 (optional)
• Configuring the Inaccessible Authentication Bypass Feature, page 10-54 (optional)
• Configuring 802.1x Authentication with WoL, page 10-57 (optional)
• Configuring MAC Authentication Bypass, page 10-57 (optional)
• Configuring 802.1x User Distribution, page 10-58 (optional)
• Configuring NAC Layer 2 IEEE 802.1x Validation, page 10-59 (optional)
• Resetting the 802.1x Authentication Configuration to the Default Values, page 10-67 (optional)
• Disabling 802.1x Authentication on the Port, page 10-67 (optional)
• Configuring an Authenticator and a Supplicant Switch with NEAT, page 10-60 (optional)
• Configuring 802.1x Authentication with Downloadable ACLs and Redirect URLs, page 10-62
(optional)
• Configuring VLAN ID-based MAC Authentication, page 10-64 (optional)
• Configuring Flexible Authentication Ordering, page 10-65 (optional)
• Configuring Open1x, page 10-65 (optional)
• Configuring a Web Authentication Local Banner, page 10-66 (optional)
• Disabling 802.1x Authentication on the Port, page 10-67 (optional)
• Resetting the 802.1x Authentication Configuration to the Default Values, page 10-67 (optional)
Default 802.1x Authentication Configuration
Ta b l e 10-4 Default 802.1x Authentication Configuration
Feature Default Setting
Switch 802.1x enable state Disabled.
Per-port 802.1x enable state Disabled (force-authorized).
The port sends and receives normal traffic without 802.1x-based
au
thentication of the client.
AAA Disabled.
RADIUS server
• IP address
• UDP authentication port
• Key
• None specified.
• 1812.
• None specified.
Host mode Single-host mode.
Control direction Bidirectional control.
Periodic re-authentication Disabled.