Use this command to configure a the policy profile to use when an authentication attempt results in an access reject response from the RADIUS server.
profile-id | Specifies the RADIUS access reject policy profile ID. |
port-string | The port to configure. |
No policy profile is set.
All command modes.
The RADIUS access reject profile allows you to provision a session that encounters a RADIUS access reject response from the RADIUS server, on a per port basis, with a policy profile other than the default policy. The RADIUS access reject profile allows a MAC address that was rejected by the RADIUS server to be dealt with in a non-default manner based upon the contents of the specified policy profile.
The RADIUS access reject profile takes precedence over the RADIUS timeout profile configured using set auto-tracking port radius-timeout-profile should a RADIUS timeout take place and a RADIUS access reject has already occurred for this session.
This example shows how to set the auto-tracking RADIUS access reject profile to 11 for port tg.1.1:
System(rw)->set auto-tracking port idle-timeout-profile 11 tg.1.1