< Home

display authentication interface

Function

The display authentication interface command displays the configuration of the NAC authentication mode on an interface.

Format

display authentication interface interface-type interface-number

Parameters

Parameter

Description

Value

interface-type interface-number

Displays the configuration of the NAC authentication mode on a specified interface.
  • interface-type specifies the interface type.
  • interface-number specifies the interface number.

-

Views

All views

Default Level

1: Monitoring level

Usage Guidelines

After configuring the NAC authentication mode, you can run this command to check the configuration.

Example

# Display the configuration of the NAC authentication mode on GE0/0/1.
<HUAWEI> display authentication interface gigabitethernet 0/0/1
Authentication profile: p1
Authentication access-point: Enable
Authentication access-point max-user: 10
Port authentication order:
                          MAC
                          DOT1X
                          WEB   
Table 1 Description of the display authentication interface command output

Item

Description

Authentication profile Name of the authentication profile applied to the interface.
Authentication access-point Whether the interface functions as an access control point.
NOTE:
This field is displayed only on access devices used in policy association solutions.
Authentication access-point max-user Maximum number of users who are allowed to log in through an access point
NOTE:
This field is displayed only on access devices used in policy association solutions.
Port authentication order Authentication mode configured in the authentication profile applied to the interface. Authentication modes include:
  • MAC: indicates the MAC address authentication mode.
  • DOT1X: indicates the 802.1X authentication mode.
  • WEB: indicates the Portal authentication mode.
NOTE:
  • On a standalone device, if MAC address bypass authentication is enabled in the authentication profile using the authentication dot1x-mac-bypass command, DOT1X is displayed before MAC. If MAC address bypass authentication is disabled, MAC is displayed before DOT1X.

  • On an AS device in an SVF system or a policy association scenario, this item only indicates authentication modes configured in the authentication profile, and does not indicate the authentication sequence.

Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >