authentication fails after all allowed attempts, the interface is moved to the authentication
failed VLAN.
After the authentication VLAN is assigned, the port-state must be toggled to restart
authentication. Authentication occurs at the next re-authentication interval (dot1x
reauthentication).
Related
Commands
dot1x port-control – enables port-control on an interface.
dot1x guest-vlan – configures a guest VLAN for non-dot1x devices.
show dot1x interface – displays the 802.1X information on an interface.
dot1x auth-server
Configure the authentication server to RADIUS.
C-Series, E-Series, S-Series, Z-Series, S4810
Syntax
dot1x auth-server radius
Defaults none
Command Modes CONFIGURATION
Command History
Version 8.3.11.1 Introduced on the Z9000.
Version 8.3.7.0 Introduced on the S4810.
Version 7.6.1.0 Introduced on the C-Series and S-Series.
Version 7.4.1.0 Introduced on the E-Series.
dot1x guest-vlan
Configure a guest VLAN for limited access users or for devices that are not 802.1X capable.
C-Series, E-Series, S-Series, Z-Series, S4810
Syntax
dot1x guest-vlan vlan-id
To disable the guest VLAN, use the no dot1x guest-vlan vlan-id command.
Parameters
vlan-id
Enter the VLAN Identifier. The range is 1 to 4094.
Defaults Not configured.
Command Modes CONFIGURATION (conf-if-interface-slot/port)
Command History
Version 8.3.11.1 Introduced on the Z9000.
Version 8.3.7.0 Introduced on the S4810.
Version 7.6.1.0 Introduced on the C-Series, S-Series, and E-Series.
1317