Users Guide
Security Commands 940
Command Mode
RADIUS Server Configuration mode.
User Guidelines
The switch sends the IPv6 address of the host attempting to access the
network in the Framed-IPv6-Address attribute if it is available to the switch.
If accounting is enabled and the address is available to the switch, the switch
will send the IPv6 address in the Access-Request, Acct-Start/Acct-
Interim/Acct-Stop messages sent to the accounting server.
The switch discovers the client IPv6 address via its inclusion in the RADIUS
Access-Accept, or via DHCPv6 snooping. DHCPv6 snooping must be enabled
for the switch to discover a host IPv6 address via DHCPv6.
After an Access-Accept has been received by the switch and the switch grants
the host access to the network, it may take a few seconds before the DHCPv6
transaction completes. Use the aaa accounting delay-start command to delay
the sending of the Acct-Start packet to the accounting server.
Use the show dot1x clients command to display the RADIUS server supplied
IPv6 address, if any.
RADIUS attribute 168 Framed-IPv6-Address is defined in RFC 6911.
Command History
Command introduced in firmware release 6.5.2.
authentication event fail retry
Use the authentication event fail retry command to select the number of
times authentication is reattempted by the user for an IEEE 802.1X
supplicant. Use the no form of the command to return the number of
maximum attempts to the default value.
Syntax
authentication event fail retry max-attempts
no authentication event fail retry