authentication reauth-timeout

Sets the time to wait before reauthenticating a client that has timed out and a timeout action has been applied. This command is applicable for MAC authentication and 802.1X authentication.
Syntax
authentication reauth-timeout seconds
no authentication reauth-timeout seconds
Command Default

The default re-authentication timeout is 300 seconds.

Parameters
seconds
Sets the re-authentication timeout in seconds. The range is from 60 to 4294967295.
Modes

Authentication configuration sub-mode

Usage Guidelines

The no form of the command returns the timeout to its default value, 300 seconds.

This command sets the re-authentication timeout after a client times out, for example, when the RADIUS server is not reachable, and the client is placed in the critical, restricted, or auth-default VLAN or in the BLOCKED state (VLAN 4092). The switch continues checking for server availability based on the reauthentication-timeout interval.

Note: If the timeout action is "failure" and no restricted VLAN is configured, a session is moved to the BLOCKED state.

Examples

The example specifies a re-authentication timeout of 120 seconds.

device(config)# authentication
device(config-authen)# authentication reauth-timeout 120
History
Release version Command history
08.0.20 This command was introduced.
08.0.61 This command was modified to increase the default timeout from 60 to 300.