Determines the maximum egress bandwidth available on the port, unless
there is also a RADIUS-assigned per-port rate limit on the port.
CLI egress rate-limit per-port
rate-limit all out
Outbound
The most recent client to authenticate determines the maximum egress
bandwidth on the port for all outbound traffic, regardless of any
CLI-assigned per-port outbound rate-limit.
RADIUS egress rate-limit per
client
VSA 48
For example, suppose the CLI is used to configure a gigabit port to have an ingress rate limit of
500,000 Kbps (50% of available bandwidth), and is receiving 450,000 Kbps of traffic from
existing clients. If a RADIUS server then authenticates a new client with an ingress rate-limit of
100,000 Kbps, the maximum ingress rate limit actually available for the new client is 50,000
Kbps as long as the bandwidth usage by the other clients already on the port remains at 450,000
Kbps.
For more on static rate-limiting, see "Rate-Limiting" in the "Port Traffic Controls" in the HP Switch
Software Management and Configuration Guide for your switch.
Viewing the currently active per-port CoS and rate-limiting configuration
While a RADIUS-assigned client session is active on a given port, any RADIUS-imposed values for
the settings listed in “Application of RADIUS-Assigned Values” (page 33) are applied as shown:
Table 7 Application of RADIUS-Assigned Values
Application of dynamic RADIUS assignmentStatic per-port setting optionsDynamic RADIUS assignment
options
Applies per-client; that is, only to client whose
authentication triggered the assignment. (Up to
32 clients supported per-port.)
qos priority <0-7>802.1p Priority (CoS)
rate-limit <all | bcast
| icmp | mcast> in <kbps
| percent>
Inbound (Ingress) Rate-Limiting
Applies per-port; that is, to all clients on the port.
1
rate-limit <all | bcast
| icmp | mcast> out
<kbps | percent>
Outbound (Egress) Rate-Limiting
1
Uses the value assigned to the port by the most recent instance of client authentication.
Syntax:
show port-access [[port-list] authenticator clients |
authenticator [port-list] clients]] detail
show port-access [[port-list] mac-based clients | mac-based
[port-list] clients] detail
show port-access [[port-list] web-based clients | web-based
[port-list] clients] detail
If the switch receives an 802.1p priority (CoS) or rate-limit setting(s) from a RADIUS
server from client authentication on a port, the above commands display the assigned
values while the client's session is active. When the session ends, the values of that
client are no longer displayed.
The priority and inbound rate-limit are applied only to the inbound traffic of the
client whose authentication triggered the assignment. The outbound rate-limit applies
to all outbound traffic on the port.
authenticator [port-list] detail
authenticator [port-list] clients detail
Displays, for an 802.1X- authenticated client, the status of RADIUS-assignment
details for that client.
mac-based [port-list] clients detail
Configuring RADIUS server support for switch services 33