User Manual

Table Of Contents
NETGEAR M4500 Series Switches CLI Command Reference Manual 389
5.10.5. show dot1x users
This command is used to display the Dot1x port security user information for logically configured users
Format show dot1x users <slot/port>
Mode Privileged EXEC
Display Message
5.10.6. aaa authentication dot1x default
Use this command to configure the authentication method for port-based access to the switch. The additional
methods of authentication are used only if the previous method returns an error, not if there is an
authentication failure. The possible methods are as follows:
local. Uses the local username database for authentication.
Interface
The physical port to which the supplicant is associated.
User Name
The user name used by the client to authenticate to the server.
Supp MAC Address
The supplicant device MAC address.
Session Time
The time since the supplicant is logged on.
Filter Id
Identifies the Filter ID returned by RADIUS server when the client was
authenticated. This is a configured DiffServ policy name on switch.
VLAN ID
The VLAN assigned to the port.
VLAN Assigned
The reason the VLAN identified in the VLAN ID field has been assigned to the port.
Possible values are RADIUS, Unauthenticated VLAN, Monitor Mode, or Default.
When the VLAN Assigned reason is Default, it means that the VLAN was assigned
to the port because the P-VID of the port was that VLAN ID.
Session Timeout
This value indicates the time for which the given session is valid. The time period
in seconds is returned by the RADIUS server on authentication of the port. This
value is valid for the port only when the port-control mode is not MAC-based.
Session Termination Action
This value indicates the action to be taken once the session timeout expires.
Possible values are Default and Radius-Request. If the value is Default, the session
is terminated and client details are cleared. If the value is Radius-Request, then a
reauthentication of the client is performed.
Parameter
Definition
Users
Users configured locally to have access to the specified port.