Command Line Reference Guide

174 | 802.1X
www.dell.com | support.dell.com
If port security is enabled on an 802.1X port with VLAN assignment, the port is placed in the
RADIUS server assigned VLAN.
If 802.1X is disabled on the port, it is returned to the configured access VLAN.
When the port is in the force authorized, force unauthorized, or shutdown state, it is placed in the
configured access VLAN.
If an 802.1X port is authenticated and put in the RADIUS server assigned VLAN, any change to
the port access VLAN configuration will not take effect.
The 802.1X with VLAN assignment feature is not supported on trunk ports, dynamic ports, or
with dynamic-access port assignment through a VLAN membership.
debug dot1x
c s
Display 802.1X debugging information.
Syntax
debug dot1x [all | errors | packets | state-machine] [interface interface]
Parameters
Defaults
Disabled
Command Modes
EXEC Privilege
Command
History
dot1x auth-type mab-only
c s
Use only the host MAC address to authenticate a device with MAC authentication bypass (MAB).
Syntax
dot1x auth-type mab-only
Defaults
Disabled
Command Modes
INTERFACE
Command
History
Usage
Information
The prerequisites for enabling MAB-only authentication on a port are:
802.1X authentication must be enabled globally on the switch and on the port (dot1x
authentication command).
MAC authentication bypass must be enabled on the port (dot1x mac-auth-bypass command).
all
Enable all 802.1X debug messages.
errors
Display information about all 802.1X errors.
packets
Display information about all 802.1X packets.
state-machine
Display information about all 802.1X packets.
interface interface
Restricts the debugging information to an interface.
Version 8.4.1.0 Introduced on C-Series and S-Series
Version 8.4.2.1 Introduced on the C-Series and S-Series