cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
870
Views
10
Helpful
2
Replies

Dot1x

Hello, 

I have just started to learn about the 802.1x standard and I am trying to do some test before I deploy it in my corporate network. my question is if I configure the port with command access-session port-control force-unauthorized and 

dot1x system-auth-control in the global configuration, it will not allow a connection to the port even if I don't configure the radius server and rest of the configuration.is it correct?.

I have tried it  in my lab, the port is connected when I plug a PC to it which makes me confuse (based on the guide it should not allow).

please, can anyone clarify the concept.

any help is greatly appreciated.

 

 

2 Replies 2

Giuseppe Larosa
Hall of Fame
Hall of Fame

Hello,

the port may be up/up at Layer 2 but the PC should be not able to reach any other in any VLAN,

 

Check this aspect. 802.1X is intended to control access to tne network.

 

Hope to help

Giuseppe

 

But the PC is connected to the switch and can it send and receive data which is abnormal.