beautypg.com

Setting the quiet period, Frame retransmissions from the brocade device – Brocade FastIron Ethernet Switch Security Configuration Guide User Manual

Page 193

background image

For example, to re-authenticate Clients connected to interface 3/1, enter the following command.

device#dot1x re-authenticate e 3/1

Syntax: dot1x re-authenticate ethernet port

Setting the quiet period

If the Brocade device is unable to authenticate the Client, the Brocade device waits a specified amount
of time before trying again. The amount of time the Brocade device waits is specified with the quiet-
period
parameter. The quiet-period parameter can be from 1 - 4294967295 seconds. The default is 60
seconds.

For example, to set the quiet period to 30 seconds, enter the following command.

device(config-dot1x)#timeout quiet-period 30

Syntax: [no] timeout quiet-period seconds

Specifying the wait interval and number of EAP-request/identity frame
retransmissions from the Brocade device

When the Brocade device sends an EAP-request/identity frame to a Client, it expects to receive an
EAP-response/identity frame from the Client. By default, if the Brocade device does not receive an
EAP-response/identity frame from a Client, the device waits 30 seconds, then retransmits the EAP-
request/identity frame. Also by default, the Brocade device retransmits the EAP-request/identity frame a
maximum of two times. You can optionally configure the amount of time the device will wait before
retransmitting an EAP-request/identity frame, and the number of times the EAP-request/identity frame
will be transmitted. This section provides the command syntax for these features.

Setting the wait interval for EAP frame retransmissions

By default, if the Brocade device does not receive an EAP-response/identity frame from a Client, the
device waits 30 seconds, then retransmits the EAP-request/identity frame. You can optionally change
the amount of time the Brocade device waits before retransmitting the EAP-request/identity frame to the
Client.

For example, to cause the Brocade device to wait 60 seconds before retransmitting an EAP-request/
identity frame to a Client, enter the following command.

device(config-dot1x)#timeout tx-period 60

If the Client does not send back an EAP-response/identity frame within 60 seconds, the device will
transmit another EAP-request/identity frame.

Syntax: [no] timeout tx-period seconds

where seconds is a value from 1 - 4294967295. The default is 30 seconds.

Setting the maximum number of EAP frame retransmissions

The Brocade device retransmits the EAP-request/identity frame a maximum of two times. If no EAP-
response/identity frame is received from the Client after two EAP-request/identity frame retransmissions
(or the amount of time specified with the auth-max command), the device restarts the authentication
process with the Client.

Setting the quiet period

FastIron Ethernet Switch Security Configuration Guide

193

53-1003088-03