Displaying Configuration

The output of the show authentication configuration command indicates the global configuration details for authentication, as shown in the following example.

device# show authentication configuration
Auth:
Auth Order                          : mac-auth dot1x
Default VLAN                        : 10
Default Voice VLAN                  : Not configured
Auth Mode                           : Multiple Untagged Mode
Restricted VLAN                     : Not configured
Critical VLAN                       : Not configured
Auth Failure Action                 : Block traffic
Auth Timeout Action                 : Treat as a successful authentication
MAC Session Aging                   : Enabled
Re-authentication                   : Enabled
Reauth-period                       : 180 seconds
Reauth-timeout                      : 120 seconds
Session Max SW-Age                  : 120 seconds
Session Max HW-Age                  : 70 seconds
Max Sessions                        : 2
MAC-Auth:                            
Status                              : Enabled
802.1X Override                     : Enabled
Password Override                   : Disabled
Password Format                     : xxxx.xxxx.xxxx
802.1X:
Status                              : Enabled
Protocol Version                    : 1
PAE Capability                      : Authenticator Only
MAC-Auth Override                   : Disabled
Guest VLAN                          : Not configured
Quiet-period                        : 60 seconds
TX-period                           : 30 seconds
Supplicant-timeout                  : 30 seconds
Max Reauth Requests                 : 2
Max Frame Retries                   : 2

To display the configuration details for authentication on an interface, enter the show authentication configuration ethernet command followed by the port number, as shown in the following example.

device# show authentication configuration ethernet 1/1/1
Port 1/1/1 Configuration:
Auth Order                          : mac-auth dot1x
Auth Mode                           : Multiple Untagged Mode
Auth Failure Action                 : Block traffic
Auth Timeout Action                 : Treat as a successful authentication
DoS Protection                      : Disabled (limit = 512)
Source-guard Protection             : Disabled
Aging                               : Enabled
Max Sessions                        : 32
Reauth-timeout                      : 120 seconds
802.1X Port-Control                 : Auto