Chapter 8
| Authentication Commands
802.1X Port Authentication
– 253 –
Information Display Commands
show dot1x
This command shows general port authentication related settings on the switch or
a specific interface.
Syntax
show dot1x
[
statistics
] [
interface
interface]
statistics
- Displays dot1x status for each port.
interface
ethernet
unit/port
unit - Unit identifier. (Range: 1)
port - Port number. (Range: 1-10/28)
Command Mode
Privileged Exec
Command Usage
This command displays the following information:
â—†
Global 802.1X Parameters – Shows whether or not 802.1X port authentication is
globally enabled on the switch (page 244).
â—†
802.1X Port Summary – Displays the port access control parameters for each
interface that has enabled 802.1X, including the following items:
â–
Type – Administrative state for port access control (Enabled, Authenticator,
or Supplicant).
â–
Operation Mode – Allows single or multiple hosts (page 247).
â–
Control Mode – Dot1x port control mode (page 248).
â–
Authorized – Authorization status (yes or n/a - not authorized).
â—†
802.1X Port Details – Displays the port access control parameters for each
interface, including the following items:
â–
Reauthentication – Periodic re-authentication (page 248).
â–
Reauth Period – Time after which a connected client must be re-
authenticated (page 249).
â–
Quiet Period – Time a port waits after Max Request Count is exceeded
before attempting to acquire a new client (page 249).
â–
TX Period – Time a port waits during authentication session before re-
transmitting EAP packet (page 250).
â–
Supplicant Timeout – Supplicant timeout.
â–
Server Timeout – Server timeout. A RADIUS server must be set before the
correct operational value of 10 seconds will be displayed in this field.
â–
Reauth Max Retries – Maximum number of reauthentication attempts.
â–
Max Request – Maximum number of times a port will retransmit an EAP
request/identity packet to the client before it times out the authentication
session (page 246).