Configuration Guide Vol. 2


5.4.1 Precautions When Setting and Changing the Status of the Switch

<Structure of this section>

(1) Notes on Using set clock Commands

The duration of an authentication session is managed using the internal clock of the Switch.Keep in mind that using the set clock operation command to change the system and time has a flow-on effect on the duration of authentication sessions.

For example, if you advance the clock by three hours, sessions will appear to be in progress for three hours longer than they actually have. Conversely, if you set the clock back by three hours, authentication sessions will be extended by three hours.

(2) Notes on changing the authentication mode

To change the authentication mode while Web authentication or MAC-based authentication is enabled, execute the shutdown configuration command for all ports to be authenticated so that they are disconnected from the authentication terminal, wait at least 60 seconds, and then change the authentication mode. After changing the authentication mode, execute the no shutdown command for all the ports to be authenticated.

If you changed the authentication mode while the authentication terminal is connected, use the restart web-authentication or restart mac-authentication operation command to restart the Web authentication program or MAC-based authentication program.

(3) Notes on Configuring Authenticated Ports and MAC VLAN

If any of the operations below are performed when the value obtained from the following formula exceeds approximately 1600, the time period until authentication starts or until communication of the authenticated terminal is restored become longer because of the time period required for initial setup of the MAC manager program: the total number of authentication ports set for IEEE 802.1X (VLAN-based authentication (dynamic)), Web authentication (dynamic VLAN mode), and MAC-based authentication (dynamic VLAN mode) x the value set for the vlan <vlan id list> mac-based configuration command