Configuring IEEE 802.1x Authentication
•
•
Beginning in privileged EXEC mode, follow these steps to enable the IEEE 802.1x readiness check on
the switch:
Command
Step 1
dot1x test eapol-capable [interface
interface-id]
Step 1
configure terminal
Step 2
dot1x test timeout timeout
Step 3
end
Step 4
show running-config
Cisco Catalyst Blade Switch 3020 for HP Software Configuration Guide
8-24
When you configure the dot1x test eapol-capable command on an IEEE 802.1x-enabled port, and
the link comes up, the port queries the connected client about its IEEE 802.1x capability. When the
client responds with a notification packet, it is IEEE 802.1x-capable. A syslog message is generated
if the client responds within the timeout period. If the client does not respond to the query, the client
is not IEEE 802.1x-capable. No syslog message is generated.
The readiness check can be sent on a port that handles multiple hosts (for example, a PC that is
connected to an IP phone). A syslog message is generated for each of the clients that respond to the
readiness check within the timer period.
Purpose
Enable the 802.1x readiness check on the switch.
(Optional) For interface-id specify the port on which to check for
IEEE 802.1x readiness.
Note
(Optional) Enter global configuration mode.
(Optional) Configure the timeout used to wait for EAPOL response. The
range is from 1 to 65535 seconds. The default is 10 seconds.
(Optional) Return to privileged EXEC mode.
(Optional) Verify your modified timeout values.
Chapter 8
Configuring IEEE 802.1x Port-Based Authentication
If you omit the optional interface keyword, all interfaces on the
switch are tested.
OL-8915-03