Specifications
aaa authentication mac-authentication
492
group <Group Name>
MAC-based authentication is performed by a RADIUS server. The RADIUS server to
use is a RADIUS server group. Specify the group name set by the
aaa group server
radius command.
1. Default value when this parameter is omitted:
This parameter cannot be omitted.
2. Range of values:
Specify a character string that has no more than 32 characters. For details
about the characters that can be specified, see Specifiable values for
parameters.
Default behavior
Authentication is performed by using the internal MAC-based authentication database
instead of using the RADIUS server.
Impact on communication
When the Switch default is changed, the authentication of any terminals that were
authenticated by the previous default authentication method is canceled.
When the authentication method list is changed, the authentication of any terminals that
were authenticated by the previous authentication method list is canceled.
When the change is applied
The change is applied immediately after setting values are changed.
Notes
1. All MAC-based authentication settings take effect when the mac-authentication
system-auth-control command is set.
2. See Table 24-1 Configuration commands and MAC-based authentication modes for
the authentication mode in which the command's settings are operable.
3. Enabling of this command requires a separate authentication setting for the RADIUS
server.
4. The forced authentication functionality for MAC-based authentication operates only
when RADIUS authentication is set. If multiple authentication methods are set, the
forced authentication functionality does not operate.
Related commands
aaa authentication mac-authentication end-by-reject
aaa group server radius
mac-authentication system-auth-control
mac-authentication authentication
radius-server host or mac-authentication radius-server host