The authentication access-point command enables remote authentication access control on the interface of an authentication access device.
The undo authentication access-point command disables remote authentication access control on the interface of an authentication access device.
By default, remote access control is disabled on the interface of an authentication access device.
Ethernet interface view, MultiGE interface view, 40GE interface view, GE interface view, XGE interface view, 25GE interface view, port group view
Usage Scenario
When you deploy policy association, configure the interface of each authentication access device as the access point and enable remote access control on the interface.
To configure right control on an authentication control device instead of an authentication access device, you can disable right control of the access point on the authentication access device (by specifying the open parameter).
Precautions
This command is supported only on authentication access devices.
The authentication access-point open and authentication access-point command must be run together; otherwise, the authentication access-point open command cannot take effect.
The interface types vary according to device models.
If there is a terminal with one MAC address and multiple IP addresses on the live network, you need to configure the function of identifying static users through IP addresses on the authentication control device. However, because the authentication access device cannot generate multiple entries for the terminal, you cannot implement right control on the authentication access device. In this case, you need to disable right control of the access point on the authentication access device. Otherwise, packets of the terminal will not be forwarded.