Concept Guide

Table Of Contents
Examples
The following example enables authentication of the user’s client device before user authentication. If machine
authentication fails but user authentication succeeds, the user is assigned the restricted “guest” role:
aaa authentication dot1x dot1x
machine-authentication enable
machine-authentication machine-default-role computer
machine-authentication user-default-role guest
The following example configures an 802.1X profile that terminates authentication on the controller, where
the user authentication is performed with the controller’s internal database or to a “backend” non-802.1X
server:
aaa authentication dot1x dot1x
termination enable
Command History
Version Description
ArubaOS 3.0 Command introduced.
ArubaOS 6.1 The cert-cn-lookup, enforce-suite-b-128 and enforce-suite-b-192
parameters were introduced.
ArubaOS 6.3.1.2 The delete-keycache parameter was introduced.
Command Information
Platforms Licensing Command Mode
All platforms Base operating system. The
voice-aware parameter
requires the PEFNG license
Config mode on master controllers
Dell Networking W-Series ArubaOS 6.5.x | Reference Guide aaa authentication dot1x | 33