User's Manual
258 | 802.1X Authentication Dell Networking W-Series ArubaOS 6.4.x| User Guide
Parameter Description
Machine Authentication
Cache Timeout
The timeout, in hours, for machine authentication. The allowed range of values is
1-1000 hours, and the default value is 24 hours.
Blacklist on Machine
Authentication Failure
Select the Blacklist on Machine Authentication Failure checkbox to blacklist a
client if machine authentication fails. This setting is disabled by default.
Interval between
Identity Requests
Interval, in seconds, between identity request retries.
Range: 1-65535 seconds.
Default: 30 seconds.
Quiet Period after
Failed Authentication
The enforced quiet period interval, in seconds, following failed authentication.
Range: 1-65535 seconds.
Default: 30 seconds.
Reauthentication
Interval
Interval, in seconds, between reauthentication attempts.
Range: 60-864000 seconds.
Default: 86400 seconds (1 day).
Use Server provided
Reauthentication
Interval
Select this option to override any user-defined reauthentication interval and use
the reauthentication period defined by the authentication server.
Multicast Key Rotation
Time Interval
Interval, in seconds, between multicast key rotation.
Range: 60-864000 seconds.
Default: 1800 seconds.
Unicast Key Rotation
Time Interval
Interval, in seconds, between unicast key rotation.
Range: 60-864000 seconds. Default: 900 seconds.
Authentication Server
Retry Interval
Server group retry interval, in seconds.
Range: 5-65535 seconds.
Default: 30 seconds.
Authentication Server
Retry Count
Maximum number of authentication requests that are sent to server group.
Range: 0-3 requests.
Default: 2 requests.
Framed MTU Sets the framed Maximum Transmission Unit (MTU) attribute sent to the
authentication server.
Range: 500-1500 bytes.
Default: 1100 bytes.
Number of times ID-
Requests are retried
Maximum number of times ID requests are sent to the client.
Range: 1-10 retries.
Default: 3 retries.
Maximum Number of
Reauthentication
Attempts
Number of times a user can try to log in with wrong credentials after which the
user is blacklisted as a security threat. Set to 0 to disable blacklisting, otherwise
enter a value from 0-5 to blacklist the user after the specified number of failures.
NOTE: If changed from its default value, this option may require a license.
Maximum number of
times Held State can be
bypassed
Number of consecutive authentication failures which, when reached, causes the
controller to not respond to authentication requests from a client while the
controller is in a held state after the authentication failure. Before this number is
reached, the controller responds to authentication requests from the client even
while the controller is in its held state.
Table 47: 802.1x Authentication Profile Basic WebUI Parameters