Users Guide

Table Of Contents
Authentication, Authorization, and Accounting 367
If the authentication method for 802.1X is IAS, the switch uses the locally
stored list of username and passwords to provide port-based authentication to
users instead of using an external authentication server. Authentication using
the IAS supports the EAP-MD5 method only.
Default 802.1X Values
Table 9-12 lists the default values for the 802.1X features.
NOTE: The IAS database does not support VLAN assignments or DiffServ
policy/ACL assignments.
Table 9-12. Default Port-Based Security Values
Feature Description
Global 802.1X status Disabled
802.1X authentication method None
Per-port 802.1X status Disabled
Port authentication mode Auto mode
Port authentication state Unauthorized
Periodic reauthentication Disabled
Seconds between reauthentication
attempts
3600
Authentication server timeout 30 seconds
Resending EAP identity Request 30 seconds
Quiet period 60 seconds
Supplicant timeout 30 seconds
Max EAP request 2 times
Maximum number of supplicants per port 64 (32 for N1100-ON and N1500 Series
switches)
Guest VLAN Disabled
Unauthenticated VLAN Disabled
Dynamic VLAN creation Disabled