Wired Intelligent Edge

 View Only
Expand all | Collapse all

"aaa port-access" commands removal

This thread has been viewed 15 times
  • 1.  "aaa port-access" commands removal

    Posted Jun 15, 2023 02:14 AM

    For logging of related connected devices access switch has following "aaa port-access" commands:

    interface <>
       name "Acess Points"
       qos trust dscp
       power-over-ethernet critical
       poe-lldp-detect enabled
       mdix-mode mdix
       untagged vlan 1
       no cdp enable
       no snmp-server enable traps link-change
       aaa port-access authenticator control authorized
       aaa port-access authenticator supplicant-timeout 10
       aaa port-access authenticator max-eap-retries 1
       aaa port-access authenticator logoff-period 600
       aaa port-access mac-based addr-limit 256
       aaa port-access mac-based addr-moves
       aaa port-access mac-based logoff-period 600
       aaa port-access mac-based max-requests 2
       aaa port-access controlled-direction in
       aaa port-access auth-order mac-based authenticator
       aaa port-access auth-priority authenticator mac-based
       spanning-tree admin-edge-port
       spanning-tree bpdu-protection
       loop-protect
       exit

    I have not found a way to remove all "aaa port-access" commands when I need it, is it a bug or a feature ?!

    I've noticed such behaiviour on 2930F-48G-PoE+-4SFP+  and 2530-series switches, most likely other types have the same.



  • 2.  RE: "aaa port-access" commands removal

    Posted Jun 30, 2023 11:04 AM

    You can remove those commands by setting them back to the default value. Check here for more details and an explanation.



    ------------------------------
    Herman Robers
    ------------------------
    If you have urgent issues, always contact your Aruba partner, distributor, or Aruba TAC Support. Check https://www.arubanetworks.com/support-services/contact-support/ for how to contact Aruba TAC. Any opinions expressed here are solely my own and not necessarily that of Hewlett Packard Enterprise or Aruba Networks.

    In case your problem is solved, please invest the time to post a follow-up with the information on how you solved it. Others can benefit from that.
    ------------------------------