Product manual
-Disable the port from sending advertisements of existing GVRP-created VLANs on
the switch.
-Drop all GVRP advertisements received on the port.
3. If you disable the use of dynamic VLANs in an authentication session using the
no aaa port-access gvrp-vlans command, client sessions that were authenticated
with a dynamic VLAN continue and are not deauthenticated. However, if a
RADIUS-congured dynamic VLAN used for an authentication session is deleted
from the switch through normal GVRP operation (for example, if no GVRP
advertisements for the VLAN are received on any switch port), authenticated clients
using this VLAN are deauthenticated.
held-period
■ aaa port-access supplicant [ETHERNET] PORT-LIST held-period < 0 to 65535 >
Set the held period (default 60sec.).
Range: < 0 to 65535 >
identity
■ aaa port-access supplicant [ETHERNET] PORT-LIST identity IDENTITY
Set the identity(user name) to be used by the supplicant.
Next Available Option:
■ secret -- (p. 49)
initialize
■ aaa port-access authenticator [ETHERNET] PORT-LIST initialize
Reinitialize the authenticator state machine.
■ aaa port-access supplicant [ETHERNET] PORT-LIST initialize
Reinitialize the supplicant state machine.
login
■ aaa authentication console login
Congure login access to the switch.
Next Available Option:
■ primary < local | tacacs | radius > -- Specify the primary authentication method for access
control.(p. 43)
■ aaa authentication telnet login
Congure login access to the switch.
Next Available Option:
■ primary < local | tacacs | radius > -- Specify the primary authentication method for access
control.(p. 43)
35© 2008 Hewlett-Packard Development Company, L.P.
aaaCommand Line Interface Reference Guide