Administrator Guide
Version Description
9.10(0.0) Introduced on the S3100 series, S4048–ON, S4048–ON, S4810, S4820T, S5000, S6000,
S6000–ON, S6100–ON, the Configuration Terminal Batch mode on C9010, Z9100–ON,
and Z9500.
9.9(0.0) Introduced on the C9000 Series.
Usage Information
The dot1x critical-vlan command configures critical VLAN for the interface. If the authentication server
is not reachable or not responding, the authenticator places the port or the supplicant in critical VLAN within the
first attempt.
Use this command in Interface Batch mode to configure critical VLAN for users in a dual-homing setup.
Example
DellEMC(conf)#show dot1x interface twentyFiveGigE 1/41
802.1x information on Tf 1/41:
-----------------------------
Dot1x Status: Enable
Port Control: AUTO
Port Auth Status: AUTHORIZED (CRITICAL-VLAN)
Re-Authentication: Enable
Untagged VLAN id: 400
Guest VLAN: Enable
Guest VLAN id: 400
Auth-Fail VLAN: Enable
Auth-Fail VLAN id: 400
Auth-Fail Max-Attempts: 3
Critical VLAN: Enable
Critical VLAN id: 400
Mac-Auth-Bypass: Disable
Mac-Auth-Bypass Only: Disable
Tx Period: 30 seconds
Quiet Period: 60 seconds
ReAuth Max: 2
Supplicant Timeout: 30 seconds
Server Timeout: 30 seconds
Re-Auth Interval: 60 seconds
Max-EAP-Req: 2
Host Mode: SINGLE_HOST
Auth PAE State: Authenticated
Backend State: Idle
dot1x guest-vlan
Configure a guest VLAN for limited access users or for devices that are not 802.1X capable.
Syntax
dot1x guest-vlan vlan-id
To disable the guest VLAN, use the no dot1x guest-vlan vlan-id command.
Parameters
vlan-id Enter the VLAN Identifier. The range is from 1 to 4094.
Defaults Not configured.
Command Modes CONFIGURATION (conf-if-interface-slot/port)
Command History
This guide is platform-specific. For command information about other platforms, see the relevant Dell EMC
Networking OS Command Line Reference Guide.
Version Description
9.10(0.1) Introduced on the S6010-ON and S4048T-ON.
9.10(0.0) Introduced on the S3148.
9.10(0.0) Introduced on the S6100-ON.
802.1X 159