Reference Guide

Table Of Contents
18 | aaa authentication dot1x Dell PowerConnect ArubaOS 5.0 Command Line Interface | Reference Guide
Usage Guidelines
The 802.1x authentication profile allows you to enable and configure machine authentication and 802.1x
termination on the controller (also called “AAA FastConnect”).
In the AAA profile, you specify the 802.1x authentication profile, the default role for authenticated users, and the
server group for the authentication.
Examples
The following example enables authentication of the user’s client device before user authentication. If machine
authentication fails but user authentication succeeds, the user is assigned the restricted “guest” role:
aaa authentication dot1x dot1x
machine-authentication enable
machine-authentication machine-default-role computer
machine-authentication user-default-role guest
The following example configures an 802.1x profile that terminates authentication on the controller, where the
user authentication is performed with the controller’s internal database or to a “backend” non-802.1x server:
aaa authentication dot1x dot1x
termination enable
Command History
This command was introduced in ArubaOS 3.0.
Command Information
voice-aware Enables rekey and reauthentication for VoWLAN clients.
NOTE: The Next Generation Policy Enforced Firewall license must be
installed.
enabled
wep-key-retries
<number>
Number of times WPA/WPA2 key messages are retried. 1-5 3
wep-key-size Dynamic WEP key size, either 40 or 128 bits. 40 or 128 128 bits
wpa-fast-hand
over
Enables WPA-fast-handover. This is only applicable for phones that
support WPA and fast handover.
disabled
xSec-mtu <mtu> Sets the size of the MTU for xSec. 1024-1500 1300 bytes
Platforms Licensing Command Mode
All platforms Base operating system. The voice-
aware parameter requires the PEFNG
license
Config mode on master controllers
Parameter Description Range Default