Allied Telesis AlliedWare Plus Operating System Version 5.4.4C (x310-26FT,x310-26FP,x310-50FT,x310-50FP) User Manual
Page 1130

Authentication Commands
Software Reference for x310 Series Switches
43.4
AlliedWare Plus
TM
Operating System - Version 5.4.4C
C613-50046-01 REV A
See the section
“Limitations on Allowed Feature Combinations” on page 42.29
for
information about restrictions regarding combinations of authentication enhancements
working together.
Use appropriate ACLs (Access Control Lists) on interfaces for extra security if a supplicant
allocated to the designated auth-fail vlan can access the same network as a supplicant on
the Guest VLAN. For more information about ACL concepts, and configuring ACLs see
Chapter 33, Access Control Lists Introduction
. For more information about ACL
commands see:
■
Chapter 34, IPv4 Hardware Access Control List (ACL) Commands
■
Chapter 35, IPv4 Software Access Control List (ACL) Commands
■
Chapter 37, IPv6 Software Access Control List (ACL) Commands
Examples
To enable auth-fail vlan for port1.0.2 and assign VLAN 100, use the following
commands:
To disable the auth-fail vlan feature for port1.0.2, use the following commands:
Validation
Commands
Related Commands
dot1x max-auth-fail
show dot1x
show dot1x interface
awplus#
configure terminal
awplus(config)#
interface port1.0.2
awplus(config-if)#
auth auth-fail vlan 100
awplus#
configure terminal
awplus(config)#
interface port1.0.2
awplus(config-if)#
no auth auth-fail vlan