beautypg.com

Allied Telesis AlliedWare Plus Operating System Version 5.4.4C (x310-26FT,x310-26FP,x310-50FT,x310-50FP) User Manual

Page 1130

background image

Authentication Commands

Software Reference for x310 Series Switches

43.4

AlliedWare Plus

TM

Operating System - Version 5.4.4C

C613-50046-01 REV A

See the section

“Limitations on Allowed Feature Combinations” on page 42.29

for

information about restrictions regarding combinations of authentication enhancements
working together.

Use appropriate ACLs (Access Control Lists) on interfaces for extra security if a supplicant
allocated to the designated auth-fail vlan can access the same network as a supplicant on
the Guest VLAN. For more information about ACL concepts, and configuring ACLs see

Chapter 33, Access Control Lists Introduction

. For more information about ACL

commands see:

Chapter 34, IPv4 Hardware Access Control List (ACL) Commands

Chapter 35, IPv4 Software Access Control List (ACL) Commands

Chapter 37, IPv6 Software Access Control List (ACL) Commands

Examples

To enable auth-fail vlan for port1.0.2 and assign VLAN 100, use the following
commands:

To disable the auth-fail vlan feature for port1.0.2, use the following commands:

Validation

Commands

show running-config

Related Commands

dot1x max-auth-fail
show dot1x
show dot1x interface

awplus#

configure terminal

awplus(config)#

interface port1.0.2

awplus(config-if)#

auth auth-fail vlan 100

awplus#

configure terminal

awplus(config)#

interface port1.0.2

awplus(config-if)#

no auth auth-fail vlan