Cisco Gigabit Ethernet Switch Module for HPBladeSystem p-Class Release Notes, CiscoIOSRelease12.2(35)SE and later

32
Cisco Gigabit Ethernet Switch Module for HP BladeSystem p-Class Release Notes, Cisco IOS Release 12.2(35)SE and later
459515-002
Documentation Updates
Usage Guidelines Use the show fallback profile privileged EXEC command to display profiles that are configured on the
switch.
Expressions are case sensitive. For example, if you enter | exclude output, the lines that contain output
are not displayed, but the lines that contain Output are displayed.
Examples This is an example of output from the show fallback profile command:
switch# show fall profile
Profile Name: dot1x-www
------------------------------------
Description : NONE
IP Admission Rule : webauth-fallback
IP Access-Group IN: default-policy
Profile Name: dot1x-www-lpip
------------------------------------
Description : NONE
IP Admission Rule : web-lpip
IP Access-Group IN: default-policy
Profile Name: profile1
------------------------------------
Description : NONE
IP Admission Rule : NONE
IP Access-Group IN: NONE
Related Commands
Updates to the System Message Guide
These system messages were added to the system message guide:
Error Message DOT1X-5-SECURITY_VIOLATION: Security violation on the interface
[chars], new MAC address [enet] is seen.
Explanation A host on the specified interface is trying to access the network or to authenticate in a
host mode that does not support the number of hosts attached to the interface. This is a security
violation, and the port is put in the error-disabled state.
Recommended Action Ensure that the interface is configured to support the number of attached hosts.
Enter the shutdown interface configuration command and then the no shutdown interface
configuration command to restart the port.
Command Description
dot1x fallback Configure a port to use web authentication as a fallback method for
clients that do not support IEEE
802.1x authentication.
fallback profile Create a web authentication fallback profile.
ip admission Enable web authentication on a switch port
ip admission name proxy
http
Enable web authentication globally on a switch
show dot1x [interface
interface-id]
Displays IEEE 802.1x status for the specified port.