beautypg.com

Allied Telesis AT-S62 User Manual

Page 339

background image

AT-S62 Command Line User’s Guide

339

supptimeout

Sets the switch-to-client retransmission time for the

EAP-request frame. The default value for this
parameter is 30 seconds. The range is 1 to 600
seconds.

servertimeout

Sets the timer used by the switch to determine

servtimeout

authentication server timeout conditions. The default

value is 30 seconds. The range is 1 to 65,535 seconds.
The parameters are equivalent.

maxreq

Specifies the maximum number of times that the

switch retransmits an EAP Request packet to the client
before it times out the authentication session. The
range is 1 to 10 retransmissions and the default is 2.

ctrldirboth

Specifies how the port is to handle ingress and egress

broadcast and multicast packets when in the
unauthorized state. When a port is set to the
Authenticator role, it remains in the unauthorized
state until the client logs on by providing a username
and password combination. In the unauthorized state,
the port will only accept EAP packets from the client.
All other ingress packets that the port might receive
from the client, including multicast and broadcast
traffic, is discarded until the supplicant has logged on.

You can use this selection to control how an

Authenticator port will handle egress broadcast and
multicast traffic when in the unauthorized state. You
can instruct the port to forward this traffic to the
client, even though the client has not logged on, or
you can have the port discard the traffic.

The two selections are:

ingress

An authenticator port, when in the
unauthorized state, will discard all
ingress broadcast and multicast packets
from the client. while forwarding all
egress broadcast and multicast traffic to
the same client. This is the default.

both

An authenticator port, when in the
unauthorized state, will not forward
ingress or egress broadcast and multicast
packets from or to the client until the
client has logged on.