mac-authentication lldp-override
mac-authentication
lldp-override
[
timeout
seconds
]
no mac-authentication lldp-override
[
timeout
seconds
]
The default timeout for an LLDP packet to arrive is 30 seconds.
Authentication configuration sub-mode
This function is available only when FlexAuth and LLDP are enabled on the interface, and the port operates in multiple-hosts mode.
The override occurs if the LLDP packet arrives within the configured timeout (default: 30 seconds, configurable up to 120 seconds).
After initial MAC authentication, if the LLDP frame is received within the timeout, the switch authenticates the MAC address from the LLDP frame and updates the session. If the frame arrives after the timeout, the original authentication remains unchanged.
If the timeout is not specified in the configuration, the system will default to 30 seconds.
The following example configures the MAC address of the received LLDP frame with a timeout value of 90 seconds to override the currently authenticated MAC address on the FlexAuth port.
device# configure terminal device(config)# authentication device(config-authen)# auth-mode multiple-hosts device(config-authen)# mac-authentication lldp-override timeout 90
| Release version | Command history |
|---|---|
| 10.0.10h_cd1 | This command was introduced. |