C
HAPTER
15
| Security Commands
Network Access Server Commands
– 355 –
security network
nas configuration
This command shows global and port-specific settings for IEEE 802.1X.
SYNTAX
security network nas configuration [port-list]
port-list - A specific port or a range of ports. (Range: 1-28, or all)
DEFAULT SETTING
All ports
COMMAND USAGE
For a description of the items displayed by this command, see "Configuring
Authentication Through Network Access Servers" on page 94.
EXAMPLE
Security/Network/NAS>configuration 1
802.1X Configuration:
=====================
Mode : Disabled
security network nas
state
Sets a port’s authentication mode
security network nas
reauthentication
Sets clients to be re-authenticated after an interval specified by
the re-authentication period
security network nas
reauthperiod
Sets the time after which a connected client must be re-
authenticated
security network nas
eapoltimeout
Sets the time the switch waits for a supplicant response during an
authentication session before retransmitting a Request Identify
EAPOL packet
security network nas
agetime
The period used to calculate when to age out a client allowed
access to the switch through Single 802.1X, Multi 802.1X, and
MAC-based authentication
security network nas
holdtime
The time after an EAP Failure indication or RADIUS timeout that a
client is not allowed access
security network nas
radius_qos
Uses a RADIUS server to set the traffic class to which traffic
coming from a successfully authenticated supplicant is assigned
on the switch
security network nas
radius_vlan
Uses a RADIUS server to set the VLAN on which a successfully
authenticated supplicant is placed on the switch
security network nas
guest_vlan
Uses a RADIUS server to set the guest VLAN on which 802.1X-
unaware clients are placed after a network administrator-defined
timeout
security network nas
authenticate
Schedules reauthentication to whenever the quiet-period of the
port runs out, or forces immediate reinitialization of the clients on
a port
security network nas
statistics
Displays authentication statistics for the selected port – either for
802.1X protocol or for the remote authentication server
depending on the authentication method
Table 35: NAS Commands (Continued)
Command Function