User Manual

Table Of Contents
Maximum number of times EAPOL packets are transmitted
[Initial value]
dot1x max-auth-req 2
[Input mode]
interface mode
[Description]
Sets the maximum value for the EAPOL packet transmission count for the applicable interface.
If this command is executed with the "no" syntax, the setting returns to the default.
[Note]
This command can be specified only for both LAN/SFP+ port and logical interface.
To use this command, you must enable the port authentication function for the applicable interface. (dot1x port-control
command)
[Example]
Set the EAPOL packet transmission count for LAN port #1 to "3".
SWP2(config)#interface port1.1
SWP2(config-if)#dot1x max-auth-req 3
5.3.7 Set the MAC authentication function
[Syntax]
auth-mac enable
auth-mac disable
no auth-mac enable
[Keyword]
enable : Enable MAC authentication
disable : Disable MAC authentication
[Initial value]
auth-mac disable
[Input mode]
interface mode
[Description]
Enables MAC authentication for the applicable interface.
When this command is executed with the "no" syntax or when disable is specified, MAC authentication is disabled.
[Note]
This command can be specified only for both LAN/SFP+ port and logical interface.
In order to actually use MAC authentication, you need to enable MAC authentication for the entire system as well. (aaa
authentication auth-mac command)
[Example]
Enable the LAN port #1 MAC authentication function.
SWP2(config)#interface port1.1
SWP2(config-if)#auth-mac enable
5.3.8 Set MAC address format during MAC authentication
[Syntax]
auth-mac auth-user type case
no auth-mac auth-user
[Parameter]
type : Specify the format
152 | Command Reference | Interface control