Lantronix
SISPM1040-582-LRT CLI Reference
33757 Rev. J
Page
113
of
272
10 Dot1x Commands
Command
:
dot1x
Description
:
IEEE Standard for port-based Network Access Control in Config mode.
Syntax
:
dot1x
authentication timer inactivity <v_10_to_100000>
dot1x
authentication timer re-authenticate <v_1_to_3600>
dot1x
feature { [ guest-vlan ] [ radius-qos ] [ radius-vlan ] }*1
dot1x
guest-vlan <value>
dot1x
guest-vlan supplicant
dot1x
max-reauth-req <value>
dot1x
re-authentication
dot1x
system-auth-control
dot1x
timeout quiet-period <v_10_to_1000000>
dot1x
timeout tx-period <v_1_to_65535>
Parameters
:
authentication
Authentication
feature
Globally enables/disables a dot1x feature functionality.
guest-vlan
Guest VLAN.
max-reauth-req
The number of times a Request Identity EAPoL frame is sent without response before
considering entering the Guest VLAN.
re-authentication Set Re-authentication state.
system-auth-control Set the global NAS state.
timeout
timeout
timer
timer
inactivity
Time in seconds between check for activity on successfully authenticated MAC addresses.
re-authenticate The period between re-authentication attempts in seconds
<10-1000000>
inactivity seconds
<1-3600>
re-authenticate seconds
guest-vlan
Globally enables/disables state of guest-VLAN
radius-qos
Globally enables/disables state of RADIUS-assigned QoS.
radius-vlan
Globally enables/disables state of RADIUS-assigned VLAN.
<1-4095>
Guest VLAN ID used when entering the Guest VLAN.
supplicant
The switch remembers if an EAPoL frame has been received on the port for the life-time
of the port. Once the switch considers whether to enter the Guest VLAN, it will first check
if this option is enabled or disabled. If disabled (unchecked; default), the switch will
only enter the Guest VLAN if an EAPOL frame has not been received on the port for the
life-time of the port. If enabled (checked), the switch will consider entering the Guest
VLAN even if an EAPOL frame has been received on the port for the life-time of the port.
<1-255>
Number of times - dot1x max-reauth-req
quiet-period
Time in seconds before a MAC-address that failed authentication gets a new
authentication chance.
tx-period
The time between EAPoL retransmissions.
<10-1000000>
seconds of dot1x timeout quiet-period
<1-65535>
seconds of dot1x timeout tx-period