System information

2-95
Configuring 802.1x Port Authentication
2
CLI – This example shows the default protocol settings for dot1x. For a description
of the additional entries displayed in the CLI, see “show dot1x” on page 3-141.
Configuring Global dot1x Parameters
The dot1x protocol includes global parameters that control the client authentication
process that runs between the client and the switch (i.e., authenticator), as well as
the client identity lookup process that runs between the switch and authentication
server. The configuration options for parameters are described in this section.
Command Attributes
dot1X Re-authentication - Sets the client to be re-authenticated after the interval
specified by the Timeout for Re-authentication Period. Re-authentication can be
used to detect if a new device is plugged into a switch port. (Default: Disabled)
dot1X Max Request Count - Sets the maximum number of times the switch port
will retransmit an EAP request packet to the client before it times out the
authentication session. (Range: 1-10; Default 2)
Timeout for Quiet Period - Sets the time that a switch port waits after the dot1X
Max Request Count has been exceeded before attempting to acquire a new client.
(Range: 1-65535 seconds; Default: 60 seconds)
Timeout for Re-authentication Period - Sets the time period after which a
connected client must be re-authenticated. (Range: 1-65535 seconds;
Default: 3600 seconds)
Timeout for TX Period - Sets the time period during an authentication session
that the switch waits before re-transmitting an EAP packet. (Range: 1-65535;
Default: 30 seconds)
Console#show dot1x 3-141
Global 802.1X Parameters
reauth-enabled: n/a
reauth-period: 3600
quiet-period: 60
tx-period: 30
supp-timeout: 30
server-timeout: 30
reauth-max: 2
max-req: 2
802.1X Port Summary
Port Name Status Mode Authorized
1 disabled ForceAuthorized n/a
2 disabled ForceAuthorized yes
3 disabled ForceAuthorized n/a
4 disabled ForceAuthorized n/a
................................................
23 disabled ForceAuthorized n/a
24 disabled ForceAuthorized n/a
Console#