EasyManua.ls Logo

Ruijie RG-S2900G-E Series - Page 541

Ruijie RG-S2900G-E Series
943 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
Configuration Guide 802.1x Configuration
The following example shows how to configure Inaccessible Authentication Bypass:
Ruijie# configure terminal
Ruijie(config)# interface fa 0/1
Ruijie(config-if)# dot1x port-control auto
Ruijie(config-if)# dot1x critical
Ruijie(config-if)# dot1x critical vlan 100
If there are already certain authenticated users on the port before all RADIUS servers fail, new users are
authorized to access the network after servers have failed and if no inaccessible VLAN is configured on the port. If
IAB authentication with inaccessible VLAN has been configured on the server, new users won't be authorized to
access network in order to guarantee that the authenticated users have the priority to use network.
If there are already normally authenticated users on the port before all servers have failed, the port will
remain the original state and won't jump to the inaccessible VLAN if the servers are failed during user's
re-authentication.
After all users under the port are disconnected, the port will automatically exit from the inaccessible VLAN.
If the inaccessible VLAN configured doesn't exist, the inaccessible VLAN will be created automatically when
entered by the port and be removed automatically when exited by the port.
The inaccessible VLAN doesn't support private VLAN, remote VLAN and super VLAN (including SUB
VLAN).
Configuring IAB Authentication with Recovery action
RADIUS server is failed, some users won't be able to pass the authentication, and the switch will authorize the users to
access network. When RADIUS server is recovered, this feature will allow IAB users under the port to reinitialize
authentication to verify user's identity.
Execute the following steps to configure IAB authentication with recovery action:
Command
Function
Ruijie# configure terminal
Enter global configuration mode.
Ruijie(config)# interface <interface-id>
Enter interface configuration mode.
Ruijie(config-if)# dot1x critical recovery action
reinitialize
Allow IAB users under the port to reinitialize
authentication when the server has recovered.
Ruijie(config-if)# end
Return to privilege EXEC mode.
Ruijie# show running-config
Display all configurations.

Table of Contents

Related product manuals