Specifications
2-164
Catalyst 2950 and Catalyst 2955 Switch Command Reference
78-15304-01
Chapter 2 Cisco IOS Commands
show dot1x
802.1X Port Summary
Port Name Status Mode Authorized
Gi0/1 disabled n/a n/a
Gi0/2 enabled Auto (negotiate) no
802.1X Port Details
802.1X is disabled on GigabitEthernet0/1
802.1X is enabled on GigabitEthernet0/2
Status Unauthorized
Port-control Auto
Supplicant 0060.b0f8.fbfb
Multiple Hosts Disallowed
Current Identifier 2
Authenticator State Machine
State AUTHENTICATING
Reauth Count 1
Backend State Machine
State RESPONSE
Request Count 0
Identifier (Server) 2
Reauthentication State Machine
State INITIALIZE
Note In the previous example, the supp-timeout, server-timeout, and reauth-max values in the Global 802.1X
Parameters section are not configurable.When relaying a request from the Remote Authentication
Dial-In User Service (RADIUS) authentication server to the client, the supp-timeout is the amount of
time the switch waits for a response before it resends the request. When relaying a response from the
client to the RADIUS authentication server, the server-timeout is the amount of time the switch waits
for a reply before it resends the response. The reauth-max parameter is the maximum number of times
that the switch tries to authenticate the client without receiving any response before the switch resets the
port and restarts the authentication process.
In the 802.1X Port Summary section of the example, the Status column shows whether the port is
enabled for 802.1X (the dot1x port-control interface configuration command is set to auto or
force-unauthorized). The Mode column shows the operational status of the port; for example, if you
configure the dot1x port-control interface configuration command to force-unauthorized, but the port
has not transitioned to that state, the Mode column displays auto. If you disable 802.1X, the Mode
column displays n/a.
The Authorized column shows the authorization state of the port. For information about port states, refer
to the “Configuring 802.1X Port-Based Authentication” chapter in the Catalyst 2950 and Catalyst 2955
Switch Software Configuration Guide.
This is an example of output from the show dot1x interface gigabitethernet0/2 privileged EXEC
command. Table 2-7 describes the fields in the example.
Switch# show dot1x interface gigabitethernet0/2
802.1X is enabled on GigabitEthernet0/2
Status Authorized
Port-control Auto
Supplicant 0060.b0f8.fbfb
Multiple Hosts Disallowed
Current Identifier 3