Configuration Guide Vol. 2


5.5.1 List of configuration commands

The following table lists the commands used to configure Layer 2 authentication.

Table 5-23: List of configuration commands

Command name

Description

Applicable Layer 2 authentication types

IEEE802.1X

Web certification*

MAC-based Authentication

authentication arp-relay

Specify this command if you want the Switch to forward ARP packets from unauthenticated terminals to destinations outside the Switch.

OK

OK

OK

authentication force-authorized enable

Enables forced authentication.

-

OK

OK

authentication force-authorized vlan

Specifies the VLAN ID to be assigned to force-authorized users in dynamic VLAN mode.

-

OK

OK

authentication ip access-group

If you want the switch to forward packets from unauthenticated terminals to destinations outside the Switch, use this command to specify which types of packets to forward by means of an IPv4 access list.

OK

OK

OK

authentication max-user (global)

Specifies the maximum number of authenticated users permitted on the device.

OK

OK

OK

Authentication max-user (Ethernet Interface)

Specifies the maximum number of authenticated users permitted on each port.

OK

OK

OK

authentication radius-server dead-interval

Specifies how long to wait before attempting to access the highest-priority RADIUS server again after it stops responding.

-

OK

OK

(Legend) OK: Can be set-: Cannot be set

#: For Web authentication, the commands apply in fixed and dynamic VLAN modes.