Configuring Switch-To-Radius-Server Communication - Cisco Catalyst 4500 Series Configuration Manual

Release ios xe 3.3.0sg and ios 15.1(1)sg
Hide thumbs Also See for Catalyst 4500 Series:
Table of Contents

Advertisement

Configuring 802.1X Port-Based Authentication
Dot1x Authenticator Client List
-------------------------------
Supplicant
Session ID
Port Status
The following example illustrates when a port is authorized:
Switch# show authentication sessions int G4/5
Runnable methods list:
Switch# show dot1x interface G4/5 details
Dot1x Info for GigabitEthernet4/5
-----------------------------------
PAE
PortControl
ControlDirection
HostMode
QuietPeriod
ServerTimeout
SuppTimeout
ReAuthMax
MaxReq
TxPeriod
Dot1x Authenticator Client List
-------------------------------
Supplicant
Session ID
Port Status

Configuring Switch-to-RADIUS-Server Communication

A RADIUS security server is identified by its host name or IP address, host name and specific UDP port
number, or IP address and specific UDP port numbers. The combination of the IP address and UDP port
number creates a unique identifier, which enables RADIUS requests to be sent to multiple UDP ports on
a server at the same IP address. If two different host entries on the same RADIUS server are configured
for the same service (for example, authentication), the second host entry configured acts as the failover
backup to the first one. The RADIUS host entries are tried in the order they were configured.
Software Configuration Guide—Release IOS XE 3.3.0SG and IOS 15.1(1)SG
44-32
= 0007.e95d.83c4
= 0A050B160000009505106398
Auth SM State
= AUTHENTICATING
Auth BEND SM State
= REQUEST
= UNAUTHORIZED
Interface:
GigabitEthernet4/5
MAC Address:
0015.e981.0531
IP Address:
Unknown
User-Name:
ctssxp
Status:
Authz Success
Domain:
DATA
Oper host mode:
single-host
Oper control dir:
both
Session timeout:
N/A
Idle timeout:
N/A
Common Session ID:
0A053F0F00000004041E6B0C
Acct Session ID:
0x00000021
Handle:
0x2C000004
Method
State
dot1x
Authc Success
= AUTHENTICATOR
= AUTO
= Both
= SINGLE_HOST
= 60
= 0
= 30
= 2
= 2
= 30
= 0015.e981.0531
= 0A053F0F00000004041E6B0C
Auth SM State
= AUTHENTICATED
Auth BEND SM State
= IDLE
= AUTHORIZED
Chapter 44
Configuring 802.1X Port-Based Authentication
OL-25340-01

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents