Access Security Guide K/KA/KB.15.15

is also used for other purposes, you can wish to group the HTML files in their own
directory, for example in “/EWA/”.)
Figure 48 Adding web servers with the aaa port-access web-based
ews-server command
Figure 49 Removing a web server with the aaa port-access web-based
ews-server command
Specifying the period
Syntax
aaa port-access web-based <port-list>
[logoff-period]<60-9999999>]
Specifies the period, in seconds, that the switch enforces for an implicit logoff. This
parameter is equivalent to the MAC age interval in a traditional switch sense. If the
switch does not see activity after a logoff-period interval, the client is returned to its
pre-authentication state. (Default: 300 seconds)
Specifying the number of authentication attempts
Syntax
aaa port-access web-based <port-list> [max-requests]<1-10>]
Specifies the number of authentication attempts that must time-out before
authentication fails. (Default: 2)
Specifying maximum retries
Syntax
aaa port-access web-based <port-list> [max-retries]<1-10>]
\
Specifies the number of the number of times a client can enter their user name and
password before authentication fails. This allows the reentry of the user name and
password if necessary. (Default: 3)
Specifying the time period
Syntax
aaa port-access web-based <port-list>
[quiet-period]<1-65535>]
Specifies the time period (in seconds) the switch uses before sending an
authentication request for a client that failed authentication. (Default: 60 seconds)
Configuring web-based authentication 87