Viewing port-access information
The
show port-access summary
command displays the dynamically changed client limit settings.
Syntax:
show port-access summary [radius-overridden]
Displays summary configuration information for all ports, including the ports that have client limits set by RADIUS VSAs.
radius-overridden
: Displays only the ports with client limits that are overridden by RADIUS attributes.
If the command
no aaa port-access authentication <port-list> client-limit
is executed, the port access is in port-mode.
If the 802.1X client-limit is configured with a value from 1-32, the port access is in user-mode.
Summary configuration information
Port Access Status Summary Port-access authenticator activated [No] : No Allow RADIUS-assigned dynamic (GVRP) VLANs [No] : No Use LLDP data to authenticate [No] : No | Authenticator | Web Auth | MAC Auth | Local MAC Port | Enable Mode Limit | Enable Limit | Enable Mode Limit | Enable Limit ----- - ----- ----- ------ - ------ ----- - ------ ------ ----- - ------ --- 1 | No Port 0 | No 1 | No Port 1 | No 1 2 | No Port 0 | No 1 | No User 1 | No 1 3 | No Port 0 | No 1 | No User 1 | No 1 4 | No Port 0 | No 1 | No User 1 | No 1 5 | No Port 0 | No 1 | No User 1 | No 1 6 | No Port 0 | No 1 | No User 1 | No 1
To display the configuration information for just those ports that are dynamically overridden by RADIUS attributes, use the
show port-access summary radius-overridden
command.
Output for client-limit values that are RADIUS overridden
switch(config)# show port-access summary radius-overridden Port Access Status Summary Port-access authenticator activated [No} : No Allow RADIUS-assigned dynamic (GVRP) VLANs [No] : No Note: * indicates values dynamically overridden by RADIUS Authenticator Web Auth MAC Auth Port Enabled Mode Limit Enabled Limit Enabled Limit ---- + ------- ---- ----- + ------- ----- + ------- ----- 1 | Yes user* 1* | Yes 1 | Yes 1 2 | Yes user 32 | Yes 32* | Yes 32 4 | No port 1 | No 1 | No* 1