
130 Chapter 3 Security
212160-B
Table 70 describes the parameters and variables for the eapol command for
modifying parameters
Table 70 eapol command for modifying parameters and variables
Parameters and variables Description
port <portllist> Specifies the ports to configure for EAPOL; enter the port numbers you
want.
Note: If you omit this parameter, the system uses the port number
specified when you issued the
interface command.
init Re-initiates EAP authentication.
status
authorized|unauthorized|auto
Specifies the EAP status of the port:
• authorized—port is always authorized
• unauthorized—port is always unauthorized
• auto—port authorization status depends on the result of the EAP
authentication
traffic-control in-outIin Sets the level of traffic control:
• in-out—if EAP authentication fails, both ingressing and egressing
traffic are blocked
• in—if EAP authentication fails, only ingressing traffic is blocked
re-authentication
enable|disable
Enables or disables re-authentication.
re-authentication-interval
<num>
Enter the number of seconds you want between re-authentication
attempts; range is 1 to 604800.
Use either this variable or the re-authentication-period variable; do not
use both variables because the two variables control the same setting.
re-authentication-period
<1-604800>
Enter the number of seconds you want between re-authentication
attempts.
Use either this variable or the re-authentication-interval variable; do not
use both variables because the two variables control the same setting.
re-authenticate Specifies an immediate re-authentication.
quiet-interval <num> Enter the number of seconds you want between an authentication failure
and the start of a new authentication attempt; range is 1 to 65535.
transmit-interval <num> Specifies a waiting period for response from supplicant for EAP
Request/Identity packets. Enter the number of seconds you want to wait;
range is 1-65535.
supplicant-timeout <num> Specifies a waiting period for response from supplicant for all EAP
packets except EAP Request/Identity packets. Enter the number of
seconds you want to wait; range is 1-65535.
Komentáře k této Příručce