Quick Reference Guide

960 PowerConnect B-Series TI24X Configuration Guide
53-1002269-02
Displaying 802.1X information
28
Table 149 describes the bold fields in the display.
The output of the show dot1x config command for an interface displays the configured port control
for the interface.This command also displays information related to 802.1X multiple
host-authentication.
The following is an example of the output of the show dot1x config command for an interface.
Syntax: show dot1x config ethernet <portnum>
The <portnum> parameter is a valid port number.
The following table lists the fields in the display.
TABLE 149 Output from the show dot1x command for multiple host authentication
This field... Displays...
Authentication-fail-action The configured authentication-failure action. This can be Restricted
VLAN or Block Traffic.
Authentication Failure VLAN If the authentication-failure action is Restricted VLAN, the ID of the VLAN
to which unsuccessfully authenticated Client ports are assigned.
Mac Session Aging Whether aging for dot1x-mac-sessions has been enabled or disabled for
permitted or denied dot1x-mac-sessions.
Mac Session max-age The configured software aging time for dot1x-mac-sessions.
Flow based multi-user policy The dynamically assigned IP ACLs and MAC address filters used in the
802.1X multiple-host configuration.
TABLE 150 Output from the show dot1x config command
This field... Displays...
Port-Control The configured port control type for the interface. This can be one of the following:
force-authorized – The controlled port is placed unconditionally in the authorized
state, allowing all traffic. This is the default state for ports on the Dell device.
force-unauthorized – The controlled port is placed unconditionally in the
unauthorized state. No authentication takes place for any connected 802.1X Clients.
auto – The authentication status for each 802.1X Client depends on the
authentication status returned from the RADIUS server.
filter strict security Whether strict security mode is enabled or disabled on the interface.
PVID State The port default VLAN ID (PVID) and the state of the port PVID. The PVID state can be
one of the following
Normal – The port PVID is not set by a RADIUS server, nor is it the restricted VLAN.
RADIUS – The port PVID was dynamically assigned by a RADIUS server.
RESTRICTEDThe port PVID is the restricted VLAN.