92
dot1x free-ip ip-address { mask-
address | mask-length }
Required
By default, no free IP is
configured.
NOTE:
When global MAC authentication, Layer-2 portal authentication, or port security is enabled, the free IP
does not take effect.
Configuring the redirect URL
Follow these steps to configure a redirect URL:
Configure the redirect URL
Required
By default, no redirect URL is
configured.
NOTE:
The redirect URL must be on the free IP subnet.
Setting the EAD rule timer
EAD fast deployment automatically creates an ACL rule, or an EAD rule, to open access to the redirect
URL for each redirected user seeking to access the network. The EAD rule timer sets the lifetime of each
ACL rule. When the timer expires or the user passes authentication, the rule is removed. If users fail to
download EAD client or fail to pass authentication before the timer expires, they must reconnect to the
network to access the free IP.
To prevent ACL rule resources from being used up, you can shorten the timer when the amount of EAD
users is large.
Follow these steps to set the EAD rule timer:
dot1x timer ead-timeout ead-
timeout-value
Optional
The default timer is 30 minutes.
Displaying and maintaining EAD fast deployment
Display 802.1X session
information, statistics, or
configuration information
display dot1x [ sessions | statistics ] [
interface interface-list ] [ | { begin |
exclude | include } regular-expression ]