CLI Guide

Table Of Contents
Security Commands 1112
Command Mode
Interface Configuration (Ethernet) mode
User Guidelines
The unauthenticated VLAN is the VLAN to which supplicants that fail
802.1x authentication are assigned. By default, the switch will retry
authentication one time before assigning a user to the unauthenticated
VLAN. Configure the unauthenticated VLAN before using this command.
Command History
Syntax updated in version 6.6 firmware.
Example
The following example sets the unauthenticated VLAN on Gi1/0/21/0/2 to
VLAN 20.
console(config-if-Gi1/0/2)# authentication event fail action authorize vlan 20
show dot1x advanced
Use the show dot1x advanced command to display 802.1x advanced features
for the switch or for the specified interface. The output of this command has
been updated in release 2.1 to remove the Multiple Hosts column and add an
Unauthenticated VLAN column, which indicates whether an
unauthenticated VLAN is configured on a port. The command has also been
updated to show the Guest VLAN ID (instead of the status) since it is now
configurable per port.
Syntax
show dot1x advanced [{gigabitethernet unit/slot/port| tengigabitethernet
unit/slot/port | fortygigabitethernet unit/slot/port}]
Default Configuration
This command has no default configuration.