System information

3-136
Command Line Interface
3
show tacacs-server
Use this command to display the current settings for the TACACS+ server.
Default Setting
None
Command Mode
Global Configuration
Example
802.1x Port Authentication
The switch supports IEEE 802.1x (dot1x) port-based access control that prevents
unauthorized access to the network by requiring users to first submit credentials for
authentication. Client authentication is controlled centrally by a RADIUS server
using EAP (Extensible Authentication Protocol).
Console#show tacacs-server
Remote TACACS server configuration:
Server IP address: 10.11.12.13
Communication key with tacacs server: green
Server port number: 1824
Console
Table 3-47. 802.1x Port Authentication
Command Function Mode Page
authentication dot1x default Enables dot1x globally on the switch. GC 3-137
dot1x default Resets all dot1x parameters to their default values GC 3-137
dot1x max-req Sets the maximum number of times that the switch
retransmits an EAP request/identity packet to the client
before it times out the authentication session
IC 3-137
dot1x port-control Sets dot1x mode for a port interface IC 3-138
dot1x re-authenticate Forces re-authentication on specific ports PE 3-138
dot1x re-authentication Enables re-authentication for all ports IC 3-139
dot1x timeout quiet-period Sets the time that a switch port waits after the Max
Request Count has been exceeded before attempting to
acquire a new client
IC 3-139
dot1x timeout re-authperiod Sets the time period after which a connected client must
be re-authenticated
IC 3-140
dot1x timeout tx-period Sets the time period during an authentication session that
the switch waits before re-transmitting an EAP packet
IC 3-140
show dot1x Shows all dot1x related information PE 3-141