access … 9-5
client without authentication … 9-6
effect of Web/MAC Auth client … 9-72
enable … 9-20, 9-47
latest client, effect … 9-6
multiple client access … 9-7
multiple clients authenticating … 9-6
no client limit … 9-5
open port … 9-5
operation … 9-6
recommended use … 9-6
return to … 9-21
See also user-based.
single client authenticates … 9-6
tagged VLAN membership … 9-6
unauthorized client risk … 9-7
untagged VLAN membership … 9-6, 9-31
with Web/MAC authentication … 9-7
port-security … 9-43
port-security use … 9-7
port-security, with 802.1X … 9-46
priority of VLAN, per-port … 9-11, 9-31
quiet-period … 9-23
RADIUIS
effect on VLAN operation … 9-64, 9-65
RADIUS … 9-4
VLAN assignment … 9-37
RADIUS host IP address … 9-26
Rate-Limit override … 9-61
reauthenticate … 9-27
reauth-period … 9-24
rules of operation … 9-13
security credentials saved to configuration
file … 2-14, 2-21
server-timeout … 9-23
show commands … 9-52
show commands, supplicant … 9-63
statistics … 9-52
supplicant
client not using … 9-35
configuring switch port … 9-50
enabling switch port … 9-50
identity option … 9-50
secret … 9-50
switch port operating as … 9-48
supplicant state … 9-63
supplicant statistics, note … 9-63
supplicant, configuring … 9-48
supplicant-timeout … 9-23
terminology … 9-7
traffic flow on unathenticated ports … 9-28
troubleshooting, gvrp … 9-64, 9-65, 9-66
trunked port blocked … 9-14
tx-period … 9-23
unauthenticated port … 9-27
unauthorized … 9-22
unauthorized-Client VLAN … 9-24
unauthorized-client VLAN, defined … 9-9
unauthorized-Client VLAN, multiple
clients … 9-40
unauth-period … 9-24
unauth-period command … 9-34
unauth-vid … 9-24
use model, open VLAN mode … 9-32
used with port-security … 9-46
user-based
access … 9-5
See also port based
authentication … 9-11
client authentication … 9-6
client limit … 9-4, 9-5, 9-47
client-limit, enable … 9-21
clients use same VLAN … 9-31
convert to port-based … 9-21
enable … 9-20, 9-47
limit … 9-5
limit for web auth, MAC auth … 9-21
See also user-based.
tagged VLAN … 9-6
VLAN … 9-39, 9-40
Web/MAC Auth clients … 9-6
user-based vs. port-based … 9-17
VLAN
authorized-client … 9-36, 9-37, 9-38
guest … 9-37
RADIUS assigned, effect … 9-39
RADIUS override … 9-36
RADIUS-assigned … 9-37
tagged … 9-34, 9-35
temporary membership … 9-37
unauthorized-client … 9-37, 9-38
unauthorized-client, best use … 9-40
unauthorized-client, caution … 9-38
unauthorized-client, on different
ports … 9-40
untagged … 9-31, 9-34, 9-35
2 – Index