Qtech QSW-3300-28F-AC-AC [382/693] Port based network access control commands

Qtech QSW-3300-28F-AC-AC [382/693] Port based network access control commands
Port-Based Network Access Control Commands
Software User Manual
CLI Command Reference
Page 399
Port-Based Network Access Control Commands
This section describes the commands you use to configure port-based network access control (IEEE 802.1X).
Port-based network access control allows you to permit access to network services only to and devices that are
authorized and authenticated.
aaa authentication dot1x default
Use this command to configure the authentication method for port-based access to the switch. The additional
methods of authentication are used only if the previous method returns an error, not if there is an authentication
failure. The possible methods are as follows:
ias. Uses the internal authentication server users database for authentication. This method can be used in
conjunction with any one of the existing methods like local, radius, etc.
local. Uses the local username database for authentication.
none. Uses no authentication.
radius. Uses the list of all RADIUS servers for authentication.
Example:
The following is an example of the command.
(Routing) #configure
(Routing) (Config)#aaa authentication dot1x default ias none
(Routing) (Config)#aaa authentication dot1x default ias local radius none
clear dot1x statistics
This command resets the 802.1X statistics for the specified port or for all ports.
clear dot1x authentication-history
This command clears the authentication history table captured during successful and unsuccessful
authentication on all interface or the specified interface.
clear radius statistics
This command is used to clear all RADIUS statistics.
Format
aaa authentication dot1x default {[ias]|[method1 [method2 [method3]]]}
Mode Global Config
Format
clear dot1x statistics {unit/slot/port | all}
Mode Privileged EXEC
Format
clear dot1x authentication-history [unit/slot/port]
Mode Privileged EXEC

Содержание

Скачать