Release Notes
34 | aaa authentication dot1x Dell Networking W-Series ArubaOS 6.4.x| Reference Guide
Usage Guidelines
The 802.1X authentication profile allows you to enable and configure machine authentication and 802.1X
termination on the controller (also called “AAA FastConnect”).
In the AAA profile, specify the 802.1X authentication profile, the default role for authenticated users, and the
server group for the authentication.
Examples
The following example enables authentication of the user’s client device before user authentication. If machine
authentication fails but user authentication succeeds, the user is assigned the restricted “guest” role:
aaa authentication dot1x dot1x
machine-authentication enable
machine-authentication machine-default-role computer
machine-authentication user-default-role guest
The following example configures an 802.1X profile that terminates authentication on the controller, where
the user authentication is performed with the controller’s internal database or to a “backend” non-802.1X
server:
aaa authentication dot1x dot1x
termination enable
Command History
Version Description
ArubaOS 3.0 Command introduced.
ArubaOS 6.1 The cert-cn-lookup, enforce-suite-b-128 and enforce-suite-b-192
parameters were introduced.
ArubaOS 6.3.1.2 The delete-keycache parameter was introduced.
Command Information
Platforms Licensing Command Mode
All platforms Base operating system. The
voice-aware parameter
requires the PEFNG license
Config mode on master controllers










