Keepalive for MAC Authentication Clients
This feature provides a way to identify connections from devices that are not regularly sending data. The ICX devices can be configured to send periodic ARP requests to keep these devices active. If the device is up and responds to the ARP request, the session will stay active. If the device stops responding to the ARP request, the session will be cleared automatically.
max-sw-age
command to a minimum of 120 seconds and a multiple of 30 seconds. Keep-aliveness for clients is directly
proposed to max-sw-age
command. For example, if max-sw-age is 120 seconds, then a maximum 120 clients shall
be
considerable for keep-aliveness.
You can enable keepalive for MAC
authentication clients using the mac-authentication keep-alive command.
device# configure terminal device(config)# authentication device(config-authen)# mac-authentication keep-alive
When the MAC authentication keepalive is configured on the ICX device, it is displayed
in
the output of the show running-config authentication command.
device# show running-config authentication Current configuration for flexauth: authentication auth-default-vlan 12 max-sw-age 180 mac-authentication enable mac-authentication enable ethe 1/1/3 mac-authentication password-format xxxx.xxxx.xxxx mac-authentication keep-alive