Specifications
dot1x force-authorized vlan
372
- dot1x port-control auto
#1, #4
-
aaa authorized network default
#2
-
dot1x vlan dynamic enable
#2
-
dot1x vlan dynamic radius-vlan
#2, #3
-
vlan <VLAN ID> mac-based
#3
-
switchport mac vlan
#2, #3, #4
-
switchport mode mac-vlan
#4
-
dot1x force-authorized vlan
#3, #4
-
aaa authentication dot1x
#5
-
dot1x authentication
#6
#1
Set this command when using port-based authentication (dynamic).
#2
Set this command when using VLAN-based authentication (dynamic).
#3
Set the same VLAN ID for commands marked
#3
.
#4
Set for the same interface.
- The following accounting log data is collected when an authentication
request is sent to the RADIUS server:
No.=82
WARNING:SYSTEM: (<Additional information>)
Failed to connect
to RADIUS server.
<Additional information>:IP
You can use the
show dot1x logging command to check the
accounting log.
#5
When forced authentication is used as the Switch default, set
default group
radius.
#6
When forced authentication is used as the authentication method by port, set
aaa authentication dot1x <List name>.
6. The forced authentication authorization state is canceled if authentication for the
applicable terminal is canceled.
7. If either of the following commands has already been set, this command cannot be
set:
authentication force-authorized enable
authentication force-authorized vlan
Related commands
aaa authentication dot1x
aaa authorized network default
dot1x port-control
dot1x system-auth-control