Brocade Communications Systems 53-1001761-01 Manual De Usuario

Descargar
Página de 164
Converged Enhanced Ethernet Administrator’s Guide
113
53-1001761-01
Interface-specific administrative tasks for 802.1x
10
DRAFT: BROCADE CONFIDENTIAL
2. Use the interface command to select the interface port to modify.
switch(config)#interface tengigabitethernet 1/12
3. Use the dot1x authentication command to enable 802.1x authentication.
switch(conf-if-te-1/12)#dot1x authentication
4. Enter the copy command to save the running-config file to the startup-config file.
switch(conf-if-te-1/12)#exit
switch(config)#end
switch#copy running-config startup-config
Configuring 802.1x timeouts 
on specific interface ports
NOTE
While you are free to modify the timeouts, Brocade recommends that you leave timeouts set to their 
default values.
To configure 802.1x timeout attributes on a specific interface port, perform the following steps 
from Privileged EXEC mode. Repeat this task for each interface port you wish to modify.
1. Enter the configure terminal command to access global configuration mode.
2. Use the interface command to select the interface port to modify.
switch(config)#interface tengigabitethernet 1/12
3. Configure the timeout interval.
Example  of setting the timeout interval for an Extensible Authentication Protocol (EAP)-request frame.
switch(conf-if-te-1/12)#dot1x timeout supp-timeout 40
Configuring 802.1x re-authentication 
on specific interface ports
To configure 802.1x port re-authentication on a specific interface port, perform the following steps 
from Privileged EXEC mode. Repeat this task for each interface port you wish to modify.
1. Enter the configure terminal command to access global configuration mode.
2. Use the interface command to select the interface port to modify.
switch(config)#interface tengigabitethernet 1/12
3. Enable 802.1x authentication for the interface port.
switch(conf-if-te-1/12)#dot1x enable
4. Configure reauthentication for the interface port.
switch(conf-if-te-1/12)#dot1x reauthentication
switch(conf-if-te-1/12)#dot1x timeout re-authperiod 4000