Ga naar hoofdinhoud
  • Snel en eenvoudig bestellen
  • Bestellingen en de verzendstatus bekijken
  • Een lijst met producten maken en openen
  • Beheer uw Dell EMC locaties, producten en contactpersonen op productniveau met Company Administration.

Dell PowerEdge FN I/O Module Configuration Guide 9.10(0.0)

PDF

Configuring an Authentication-Fail VLAN

If the supplicant fails authentication, the authenticator re-attempts to authenticate after a specified amount of time.

You can configure the maximum number of times the authenticator re-attempts authentication after a failure ( 3 by default), after which the port is placed in the Authentication-fail VLAN.

Configure a port to be placed in the VLAN after failing the authentication process as specified number of times using the dot1x auth-fail-vlan command from INTERFACE mode. Configure the maximum number of authentication attempts by the authenticator using the keyword max-attempts with this command.

Example of Configuring Maximum Authentication Attempts

Dell(conf-if-gi-1/2)#dot1x auth-fail-vlan 100 max-attempts 5
                                 Dell(conf-if-gi-1/2)#show config
                                 !
                                 interface GigabitEthernet 1/2
                                 switchport
                                 dot1x guest-vlan 200
                                 
                                 dot1x auth-fail-vlan 100 max-attempts 5
                                 no shutdown
                                 Dell(conf-if-gi-1/2)#
                              

View your configuration using the show config command from INTERFACE mode, as shown in the example in Configuring a Guest VLAN or using the show dot1x interface command from EXEC Privilege mode.

Dell(conf-if-gi-2/1)#dot1x port-control force-authorized
                                 Dell(conf-if-gi-2/1)#do show dot1x interface gigabitethernet 2/1
                                 
                                 802.1x information on Gi 2/1:
                                 -----------------------------
                                 Dot1x Status:           Enable
                                 Port Control:           FORCE_AUTHORIZED
                                 Port Auth Status:       UNAUTHORIZED
                                 Re-Authentication:      Disable
                                 Untagged VLAN id:       None
                                 
                                 Guest VLAN:             Enable
                                 Guest VLAN id:          200
                                 Auth-Fail VLAN:         Enable
                                 Auth-Fail VLAN id:      100
                                 Auth-Fail Max-Attempts: 5
                                 Tx Period:              90 seconds
                                 Quiet Period:           120 seconds
                                 ReAuth Max:             10
                                 Supplicant Timeout:     15 seconds
                                 Server Timeout:         15 seconds
                                 Re-Auth Interval:       7200 seconds
                                 Max-EAP-Req:            10
                                 Auth Type:              SINGLE_HOST
                                 Auth PAE State:         Initialize
                                 Backend State:          Initialize
                              

Beoordeel deze inhoud

Nauwkeurig
Nuttig
Eenvoudig te begrijpen
Was dit artikel nuttig?
0/3000 characters
  Geef een beoordeling (1-5 sterren).
  Geef een beoordeling (1-5 sterren).
  Geef een beoordeling (1-5 sterren).
  Selecteer of het artikel nuttig is of niet.
  Opmerkingen mogen geen speciale tekens bevatten: <>() \