46-42
Software Configuration Guide—Release IOS XE 3.6.0E and IOS 15.2(2)E
OL_28731-01
Chapter 46 Configuring 802.1X Port-Based Authentication
Configuring 802.1X Port-Based Authentication
Server Policies:
ACS ACL: xACSACLx-IP-PERMIT_ALL_TRAFFIC-51de4498
Method status list:
Method State
mab Authc Success
The show authentication sessions interface interface-name policy displays session information in the
form of Local Policies(features defined locally on the box), Server policies(features downloaded from
radius) and Resultant Policies(the one with higher precedence when both local and server policies are
present). By default, server policies have higher precedence than those defined locally.
AUTH# show authentication sessions interface e0/0 policy
Interface: Ethernet0/0
MAC Address: aabb.cc01.ff00
IPv6 Address: Unknown
IPv4 Address: Unknown
User-Name: gupn
Status: Authorized
Domain: DATA
Security Policy: Should Secure
Security Status: Unsecure
Oper host mode: multi-host
Oper control dir: both
Session timeout: N/A
Common Session ID: 0D0102330000000D0003329A
Acct Session ID: Unknown
Handle: 0x6F000002
Current Policy: POLICY_Et0/0
Local Policies:
Template: SVC_1 (priority 10)
Idle timeout: 500 sec
TAG: blue
URL Redirect: www.a.com
URL Redirect ACL: a
Template: SVC_3 (priority 20)
Idle timeout: 300 sec
TAG: red
URL_Redirect: www.b.com
URL-Redirect ACL: b
Server Policies:
Idle timeout: 800 sec
Resultant policies:
Idle timeout: 500 sec
TAG: blue
URL Redirect: www.a.com
URL Redirect ACL: a
TAG: red
Method status list:
Method State
dot1x Authc Success
The following command displays the contents of the downloadable ACL:
Switch# show ip access-lists xACSACLx-IP-auth-48b79b6e
Extended IP access list xACSACLx-IP-auth-48b79b6e (per-user)
10 permit udp any any
Switch(config)#