Contents
xxviii
Catalyst 6500 Series Switch Software Configuration Guide—Release 8.7
OL-8978-04
Understanding How 802.1X Authentication with Port Security Works 40-10
Understanding How 802.1X Authentication with ARP Traffic Inspection Works 40-11
Default Authentication Configuration 40-11
Authentication Configuration Guidelines 40-12
Configuring 802.1X Authentication on the Switch 40-13
Enabling 802.1X Authentication Globally 40-14
Disabling 802.1X Authentication Globally 40-14
Enabling 802.1X Authentication for Individual Ports 40-15
Enabling 802.1X with Inaccessible Authentication Bypass 40-15
Enabling Multiple 802.1X Authentications 40-16
Setting and Enabling Automatic Reauthentication of the Host 40-17
Manually Reauthenticating the Host 40-18
Enabling Multiple Hosts 40-18
Disabling Multiple Hosts 40-19
Setting the Quiet Period 40-19
Setting the Shutdown Timeout Period 40-19
Setting the Authenticator-to-Host Retransmission Time for EAP-Request/Identity Frames 40-20
Setting the Back-End Authenticator-to-Host Retransmission Time for the EAP-Request
Frames
40-20
Setting the Back-End Authenticator-to-Authentication-Server Retransmission Time for the Transport
Layer Packets
40-21
Setting the Back-End Authenticator-to-Host Frame-Retransmission Number 40-21
Setting the Critical Recovery Delay for an Authentication Feature 40-21
Resetting the 802.1X Configuration Parameters to the Default Values 40-22
Enabling 802.1X Authentication for the DHCP Relay Agent 40-23
Disabling 802.1X Authentication for the DHCP Relay Agent 40-24
Adding Hosts to an 802.1X Guest VLAN 40-24
Configuring an 802.1X Unidirectional Controlled Port 40-25
Configuring 802.1X with ACL Assignments 40-26
Configuring 802.1X User Distribution 40-32
Enabling and Disabling 802.1X RADIUS Accounting and Tracking 40-34
Enabling and Disabling RADIUS Keepalive 40-36
Configuring the Authenticated Identity-to-Port Description Mappings 40-37
Configuring the DNS Resolution for a RADIUS Server Configuration 40-37
Configuring the Authentication Failure VLAN 40-38
Configuring a RADIUS Server Failover 40-40
Configuring 802.1X Authentication with Private VLANs 40-41
Using the show Commands 40-47