Globally Configure EAP on the Server

About this task

Globally enable or disable EAP on the switch. By default, EAP is disabled.

Procedure

  1. In the navigation pane, expand Configuration > Security > Data Path.
  2. Select 802.1X - EAPOL.
  3. Select the Global tab.
  4. From the AccessControl options, select enable.
  5. Optional: Select the appropriate NonEapRadiusPwdAttrFmt check boxes to configure the format of the RADIUS password when authenticating non-EAP MAC addresses using RADIUS.
  6. Optional: Enter the key string in the NonNonEapRadiusPwdAttkeystring field.
  7. Optional: Check the ClearNonEap check box to clear the NEAP session that is learned on the switch.
  8. Optional: Type an I-SID offset number in the AutoIsidOffset field.
  9. Optional: Select the AutoIsidOffsetEnable check box to enable Auto I-SID offset on the switch.
  10. Select Apply.

Global field descriptions

Use the data in the following table to use the Global tab.

Name

Description

EapolVersion

Displays the EAP version on the switch.

AccessControl

Enables system authentication control. EAP is disabled by default.

NonEapRadiusPwdAttrFmt

Specifies the password attribute format for non EAP RADIUS authentication.

  • ipAdd: Specifies IP address.

  • macAddr: Specifies MAC address.

  • portNumber: Specifies port number

  • padding: Specifies padding.

NonEapRadiusPwdAttrKeyString

Specifies the attribute key string for non EAP RADIUS password.

ClearNonEap

Clears the NEAP session that is learned on the switch.

AutoIsidOffset Specifies the Auto I-SID Offset value.
AutoIsidOffsetEnable Enables or disables the Auto I-SID Offset feature.