beautypg.com

Brocade FastIron Ethernet Switch Security Configuration Guide User Manual

Page 202

background image

Output from the show dot1x command (Continued)

TABLE 15

Field

Description

servertimeout

When the Authentication Server does not respond to a message sent from the Client, the
amount of time before the Brocade device retransmits the message. Refer to

Specifying a

timeout for retransmission of messages to the authentication server

on page 195.

maxreq

The number of times the Brocade device retransmits an EAP-request/identity frame if it
does not receive EAP-response/identity frame from a Client (default 2 times). Refer to an

Setting the maximum number of EAP frame retransmissions

on page 194.

reAuthMax

The maximum number of re-authentication attempts. Refer to " an

Setting the maximum

number of EAP frame retransmissions

on page 194.

re-authperiod

How often the device automatically re-authenticates Clients when periodic re-
authentication is enabled (default 3,600 seconds).

Refer to

Configuring periodic re-authentication

on page 192.

Protocol Version

The version of the 802.1X protocol in use on the device.

To display detailed information about the 802.1X configuration on the Brocade device, enter the show
dot1x configuration
command.

Brocade#show dot1x configuration

PAE Capability : Authenticator Only

system-auth-control : Enable

Number of Ports enabled : 3

Re-Authentication : Disabled

Authentication-fail-action : Per Port

Mac Session Aging : Enabled

Mac Session max-age : 120 seconds

Protocol Version : 1

quiet-period : 60 Seconds

tx-period : 30 Seconds

supptimeout : 30 Seconds

servertimeout : 30 Seconds

maxreq : 2

reAuthmax : 2

re-authperiod : 3600 Seconds

global strict security : Enable

Output from the show dot1x configuration command.

TABLE 16

Field

Description

PAE Capability

The Port Access Entity (PAE) role for the Brocade device. This is always

"Authenticator Only".

system-auth-control

Whether system authentication control is enabled on the device. The dot1x-enable
command enables system authentication control on the device.

Number of Ports enabled The number of ports on which dot1x feature is enabled.

re-authentication

Whether periodic re-authentication is enabled on the device. Refer to

Configuring

periodic re-authentication

on page 192. When periodic re-authentication is enabled,

the device automatically re-authenticates Clients every 3,600 seconds by default.

802.1X Port Security

202

FastIron Ethernet Switch Security Configuration Guide

53-1003088-03