Specifications
authentication multi-step
538
authentication multi-step
Configure a multistep authentication port.
Syntax
To set or change information:
authentication multi-step [{permissive | dot1x}]
To delete information:
no authentication multi-step
Input mode
(config-if)
Parameters
{permissive | dot1x}
permissive
Permits both Web authentication and IEEE 802.1X authentication for a
terminal on which the first step (MAC-based authentication) has failed.
1. Default value when this parameter is omitted:
For a terminal on which the first step (MAC-based authentication) has
failed, neither Web authentication nor IEEE 802.1X authentication is
permitted.
dot1x
Permits MAC-based authentication and IEEE 802.1X authentication as the
first step of authentication. For a terminal on which the first step (MAC-based
authentication or IEEE 802.1X authentication) has failed, Web authentication
is not permitted.
1. Default value when this parameter is omitted:
For a terminal on which the first step (MAC-based authentication) has
failed, neither Web authentication nor IEEE 802.1X authentication is
permitted.
2. Range of values:
permissive or dot1x
Default behavior
The port operates as a single authentication port.
Impact on communication
The authenticated state of a terminal connected to the applicable port is canceled.
When the change is applied
The change is applied immediately after setting values are changed.
Notes
1. If at least one of the following commands is set for a Switch, this command cannot be
set:
dot1x vlan dynamic enable
dot1x vlan dynamic radius-vlan