10 dot1x re-reauthenticate, 11 dot1x timeout – Fortinet 548B User Manual

Page 257

Advertising
background image

- 257 -

7.8.3.10 dot1x re-reauthenticate

This command begins the re-authentication sequence on the specified port. This command is only valid
if the control mode for the specified port is 'auto'. If the control mode is not 'auto' an error will be returned.

Syntax

dot1x re-authenticate <slot/port>

<slot/port> - is the desired interface number.

Default Setting

None

Command Mode

Privileged Exec

7.8.3.11 dot1x timeout

This command sets the value, in seconds, of the timer used by the authenticator state machine on this
port. Depending on the token used and the value (in seconds) passed; various timeout configurable
parameters are set. The following tokens are supported.

guest-vlan-period: The time, in seconds, for which the authenticator waits to see if any EAPOL packets
are received on a port before authorizing the port and placing the port in the guest vlan (if configured).
The guest vlan timer is only relevant when guest vlan has been configured on that specific port.

reauth-period: Sets the value, in seconds, of the timer used by the authenticator state machine on this
port to determine when re-authentication of the supplicant takes place. The reauth-period must be a
value in the range 1 - 65535.

quiet-period: Sets the value, in seconds, of the timer used by the authenticator state machine on this
port to define periods of time in which it will not attempt to acquire a supplicant. The quiet-period must be
a value in the range 0 - 65535.

tx-period: Sets the value, in seconds, of the timer used by the authenticator state machine on this port
to determine when to send an EAPOL EAP Request/Identity frame to the supplicant. The quiet-period
must be a value in the range 1 - 65535.

supp-timeout: Sets the value, in seconds, of the timer used by the authenticator state machine on this
port to timeout the supplicant. The supp-timeout must be a value in the range 1 - 65535.

Advertising