beautypg.com

Allied Telesis AT-9000 Series User Manual

Page 936

background image

Chapter 61: 802.1x Port-based Network Access Control Commands

908

broadcast and multicast packets while discarding ingress broadcast and
multicast traffic. This is the default setting. Authenticator ports set to the
BOTH option discard both ingress and egress broadcast traffic until a
client has logged on.

This command is only available on authenticator ports that are set to the
single operating mode. Authenticator ports that are set to the multi
operating mode do not forward ingress or egress broadcast or multicast
packets until at least one client has logged on.

Confirmation Command

“SHOW AUTH-MAC INTERFACE” on page 923

“SHOW DOT1X INTERFACE” on page 928

Examples

This example configures authenticator ports 23 and 24 to discard all
ingress and egress broadcast and multicast packets while the ports are in
the unauthorized state:

awplus> enable
awplus# configure terminal
awplus(config)# interface port1.0.23,port1.0.24
awplus(config-if)# dot1x control-direction both

This example configures authenticator port 1 to forward the egress
broadcast and multicast packets and to discard the ingress packets:

awplus> enable
awplus# configure terminal
awplus(config)# interface port1.0.1
awplus(config-if)# dot1x control-direction in