Installation manual
4-149
SIGNAMAX LLC • www.signamax.eu
Network Access (MAC Address Authentication)
Network Access authentication controls access to the network by authenticating the MAC
address of each host that attempts to connect to a switch port. Traffic received from a
specific MAC address is forwarded by the switch only if the source MAC address is
successfully authenticated by a central RADIUS server. While authentication for a MAC
address is in progress, all traffic is blocked until authentication is completed. Once
successfully authenticated, the RADIUS server may optionally assign VLAN settings for
the switch port.
network-access mode
Use this command to enable network access authentication on a port. Use the no form of
this command to disable network access authentication.
Syntax
[no] network-access mode mac-authentication
Default Setting
Disabled
Command Mode
Interface Configuration
Table 4-42 Network Access
Command Function Mode Page
network-access mode Enables MAC authentication on an interface IC 4-149
network-access
max-mac-count
Sets a maximum for authenticated MAC addresses on an
interface
IC 4-150
network-access
dynamic-vlan
Enables dynamic VLAN assignment from a RADIUS
server
IC 4-151
network-access
guest-vlan
Specifies the guest VLAN IC 4-152
mac-authentication
reauth-time
Sets the time period after which a connected MAC
address must be re-authenticated
GC 4-152
mac-authentication
intrusion-action
Determines the port response when a connected host fails
MAC authentication.
IC 4-153
mac-authentication
max-mac-count
Sets a maximum for mac-authentication authenticated
MAC addresses on an interface
IC 4-153
clear network-access Clears authenticated MAC addresses from the address
table
PE 4-154
show network-access Displays the MAC authentication settings for port
interfaces
PE 4-154
show network-access
mac-address-table
Displays information for entries in the secure MAC
address table
PE 4-155