Displaying the MAC authentication sessions
Various show commands can be used to display information about MAC authentication
sessions.
Note: The IP address of the authenticated host is displayed only when an IP ACL is applied
to the interface based on the RADIUS server response.
The following example displays MAC authentication session information for all interfaces.
device# show mac-authentication sessions all
-----------------------------------------------------------------------------------
Port MAC IP(v4/v6) VLAN Auth ACL Session Age
Addr Addr State Time
-----------------------------------------------------------------------------------
1/1/1 0024.38c9.da40 fe80::224:38ff:fec9: 100 Yes None 7400 Ena
N/A
1/1/1 00aa.bbcc.dd00 fe80::2aa:bbff:fecc: 100 Yes Yes 7400 Ena
222::223
100.100.100.10
The following example displays MAC authentication session information for a specific interface.
device# show mac-authentication sessions ethernet 1/1/2
---------------------------------------------------------------------------------
Port MAC IP Vlan Auth ACL Session Age
Addr Addr State Time
---------------------------------------------------------------------------------
1/1/2 0010.94ab.0021 192.85.1.2 300 Yes Yes 100 Ena
The following example displays a brief description of MAC authentication sessions.
device# show mac-authentication sessions brief
--------------------------------------------------------------------------------------------
Port Number of Number of Number of Untagged Dynamic
Attempted Users Authorized Users Denied Users VLAN Type Port ACL
--------------------------------------------------------------------------------------------
1/1/2 1 1 0 Radius-VLAN No
1/1/3 0 0 0 Auth-Default-VLAN No
1/1/4 0 0 0 Auth-Default-VLAN No
1/1/5 0 0 0 Auth-Default-VLAN No
2/1/1 0 0 0 Auth-Default-VLAN No
2/1/2 0 0 0 Auth-Default-VLAN No
2/1/4 0 0 0 Auth-Default-VLAN No