Displaying Configuration
The output of the
show authentication configuration command indicates the global configuration details for authentication as shown in
the following example.
device# show authentication configuration Auth: Auth Order : mac-auth dot1x Default VLAN : 10 Default Voice VLAN : Not configured Auth Mode : Multiple Untagged Mode Restricted VLAN : Not configured Critical VLAN : Not configured Auth Failure Action : Block traffic Auth Timeout Action : Treat as a successful authentication MAC Session Aging : Enabled Re-authentication : Enabled Reauth-period : 180 seconds Reauth-timeout : 120 seconds Session Max SW-Age : 120 seconds Session Aax HW-Age : 70 seconds Max Sessions : 2 MAC-Auth: Status : Enabled 802.1X Override : Enabled Password Override : Disabled Password Format : xxxx.xxxx.xxxx 802.1X: Status : Enabled Protocol Version : 1 PAE Capability : Authenticator Only MAC-Auth Override : Disabled Guest VLAN : Not configured Quiet-period : 60 seconds TX-period : 30 seconds Supplicant-timeout : 30 seconds Max Reauth Requests : 2 Max Frame Retries : 2
To display the configuration details for authentication on an interface, enter the
show authentication configuration ethernet command followed by the port number as shown in the following example.
device# show authentication configuration ethernet 1/1/1 Port 1/1/1 Configuration: Auth Order : mac-auth dot1x Auth Mode : Multiple Untagged Mode Auth Failure Action : Block traffic Auth Timeout Action : Treat as a successful authentication DoS Protection : Disabled (limit = 512) Source-guard Protection : Disabled Aging : Enabled Max Sessions : 32 Reauth-timeout : 120 seconds 802.1X Port-Control : Auto