Allied Telesis AT-S63 User Manual

Page 640

Advertising
background image

Chapter 37: 802.1x Port-based Network Access Control Commands

640

Section VIII: Port Security

and the authentication server.
Each client that attempts to
access the network is uniquely
identified by the switch by
using the client's MAC
address. This is the default
setting.

authorised or

Disables 802.1X port-based

forceauthenticate

authentication and causes the

port to transition to the
authorized state without any
authentication exchange
required. The port transmits
and receives normal traffic
without 802.1X-based
authentication of the client. The
parameters are equivalent.

unauthorised or

Causes the port to remain in

forceunauthenticate

the unauthorized state,

ignoring all attempts by the
client to authenticate. The
switch blocks all authentication
on the port. The parameters
are equivalent.

quietperiod

Sets the number of seconds that the switch remains in
the quiet state following a failed authentication
exchange with the client. The default value is 60
seconds. The range is 0 to 65,535 seconds.

txperiod

Sets the number of seconds that the switch waits for a

response to an EAP-request/identity frame from the
client before retransmitting the request. The default
value is 30 seconds. The range is 1 to 65,535 seconds.

reauthenabled

Controls whether the client must periodically
reauthenticate. The options are:

enabled

Specifies that the client must periodically
reauthenticate. This is the default
setting. The time period between
reauthentications is set with the
reauthperiod parameter.

disabled

Specifies that reauthentication by the
client is not required after the initial
authentication. Reauthentication is only
required if there is a change to the status
of the link between the supplicant and

Advertising