Access Security Guide K/KA/KB.15.15

Figure 348 show port-access authenticator Command
The information displayed with the show port-access authenticator command for
individual (config | statistics | session-counters | vlan | clients) options is described
below.
Syntax
show port-access authenticator config [port-list]
Displays 802.1X port-access authenticator configuration settings, including:
Whether port-access authentication is enabled
Whether RADIUS-assigned dynamic VLANs are supported
802.1X configuration of ports that are enabled as 802.1X authenticators (See
the syntax descriptions in “Reconfigure Settings for Port-Access” (page 460).
Use the show running command to view the current client-limit configuration
available for switches.)
You can display 802.1X port-access authenticator configuration for all switch ports
or specified ports. 802.1X configuration information for ports that are not enabled
as 802.1X authenticators is not displayed.
Figure 349 show port-access authenticator config Command
Using
Enabling the Use of GVRP-Learned Dynamic VLANs in Authentication Sessions
Syntax
aaa port-access gvrp-vlans
Enables the use of dynamic VLANs (learned through GVRP) in the temporary
untagged VLAN assigned by a RADIUS server on an authenticated port in an
802.1X, MAC, or Web authentication session. Enter the no form of this command
to disable the use of GVRPlearned VLANs in an authentication session. For
information on how to enable a switch to dynamically create 802.1Q-compliant
VLANs, see “GVRP” in the Advanced Traffic Management Guide.
484 Port-Based and User-Based Access Control (802.1X)