Users Guide

Table Of Contents
Security Commands 968
Disable Host Port:
The disable host port request may be useful when a port is causing issues
on the network. It administratively disables the port by bringing the link
down. The administrator may re-enable the port using the no shutdown
command.
If a valid and authenticated disable host port request is received from a
configured CoA client and the session cannot be found, the switch returns
a CoA-NAK message with the 503 Session Context Not Found response
code. If a valid and authenticated request is received from a configured
CoA client and the disable host port is administratively disabled, a CoA-
NAK response is returned with 501 Administratively Prohibited response
code.
Bounce Port:
A bounce port request disables the port for 10 seconds (terminating all
sessions on the port) and then re-enables the port. The termination
disables access to the network for all hosts on the port by disabling the link
and may cause the hosts to attempt to re-authenticate when the link is
brought up. Therefore, it is recommended that the bounce port request
only be used for ports configured in 802.1X auto mode.
If a valid and authenticated bounce port request is received from a
configured CoA client and the session cannot be found, the switch returns
a CoA-NAK message with the 503 Session Context Not Found response
code. If a valid and authenticated request is received from a configured
CoA client and the bounce port capability is administratively disabled, a
CoA-NAK response is returned with 501 Administratively Prohibited
response code.
If it expected that more than one session will authenticate over a port, use of
multi-auth or multi-domain host mode authentication is recommended.
Command History
Introduced in version 6.2.0.1 firmware.