R2511-HP MSR Router Series Security Command Reference(V5)

137
dot1x re-authenticate
Use dot1x re-authenticate to enable the periodic online user re-authentication function.
Use undo dot1x re-authenticate to disable the function.
Syntax
dot1x re-authenticate
undo dot1x re-authenticate
Default
The periodic online user re-authentication function is disabled.
Views
Ethernet interface view
Default command level
2: System level
Usage guidelines
Periodic re-authentication enables the access device to periodically authenticate online 802.1X users on
a port. This function tracks the connection status of online users and updates the authorization attributes
assigned by the server, such as the ACL, VLAN, and user profile-based QoS.
You can use the dot1x timer reauth-period command to configure the interval for re-authentication.
Examples
# Enable the 802.1X periodic online user re-authentication function on Ethernet 1/1 and set the periodic
re-authentication interval to 1800 seconds.
<Sysname> system-view
[Sysname] dot1x timer reauth-period 1800
[Sysname] interface ethernet 1/1
[Sysname-Ethernet1/1] dot1x re-authenticate
Related commands
dot1x timer reauth-period
dot1x retry
Use dot1x retry to set the maximum number of attempts for sending an authentication request to a client.
Use undo dot1x retry to restore the default.
Syntax
dot1x retry max-retry-value
undo dot1x retry
Default
The maximum number of attempts that the device can send an authentication request to a client is twice.
Views
System view