show authentication configuration

Displays the 802.1X and MAC authentication configuration for the device or the specified interface.
Syntax
show authentication configuration [ all | ethernet { unit / slot / port } ]
Parameters
ethernet { unit / slot / port }
Displays authentication configuration for the specified port.
all
Displays authentication configuration for all Flexible authentication ports.
Modes

All modes.

Usage Guidelines

The show authentication configuration command without parameters displays global configuration information for the ICX device.

Examples

The following example displays configuration details for global authentication.

device# show auth configuration 
Auth:
  Auth Order                     : mac-auth dot1x
  Default VLAN                   : 10
  Default Voice VLAN             : Not configured
  Auth Mode                      : Multiple Untagged Mode
  Restricted VLAN                : Not configured
  Critical VLAN                  : Not configured
  Auth Failure Action            : Block traffic
  Auth Timeout Action            : Treat as a successful authentication 
  MAC Session Aging              : Enabled
  Re-authentication              : Enabled
  Reauth-period                  : 180 seconds
  Reauth-timeout                 : 120 seconds
  Session Max SW-Age             : 120 seconds
  Session Aax HW-Age             : 70 seconds
  Max Sessions                   : 2
MAC-Auth:
  Status                         : Enabled
  802.1X Override                : Enabled
  Password Override              : Disabled
  Password Format                : xxxx.xxxx.xxxx 
802.1X:
  Status                         : Enabled
  Protocol Version               : 1
  PAE Capability                 : Authenticator Only
  MAC-Auth Override              : Disabled
  Guest VLAN                     : Not configured
  Quiet-period                   : 60 seconds
  TX-period                      : 30 seconds
  Supplicant-timeout             : 30 seconds
  Max Reauth Requests            : 2
  Max Frame Retries              : 2

The following example displays authentication configuration details for port 1/1/1.

device# show auth configuration ethernet 1/1/1 
Port 1/1/1 Configuration:
  Auth Order                     : mac-auth dot1x
  Auth Mode                      : Multiple Untagged Mode
  Auth Failure Action            : Block traffic
  Auth Timeout Action            : Treat as a successful authentication 
  DoS Protection                 : Disabled (limit = 512)
  Source-guard Protection        : Disabled 
  Aging                          : Enabled
  Max Sessions                   : 32
  Reauth-timeout                 : 120 seconds
  802.1X Port-Control            : Auto
History
Release version Command history
08.0.80 This command was introduced.