直接配置
#
#
lnp disable
#
undo authentication unified-mode
#
vlan1000
#
domain uninac
#
dot1x enable
dot1x authentication-method eap
#
radius-server template default
radius-server template uninacradius
radius-server shared-key cipher %^%#uN]"WCL`OV$+W2$F:%aR}/H;=4|"[~=(TdWwD>+O%^%#
radius-server authentication 192.168.1.1 1812 weight 80
radius-server authentication 192.168.1.2 1812 weight 80
undo radius-server user-name domain-included
#aaa
authentication-scheme default
authentication-mode local
authentication-scheme radius
authentication-mode radius
authentication-scheme uninacradiusa
authentication-mode radius none
authorization-scheme default
authorization-mode local
accounting-scheme default
accounting-mode none
local-aaa-user password policy administrator
password history record number 0
password expire 0
domain default
authentication-scheme radius
accounting-scheme default
radius-server default
domain default_admin
authentication-scheme default
accounting-scheme default
domain uninac
authentication-scheme uninacradiusa
accounting-scheme default
radius-server uninacradius
端口配置
#
interface GigabitEthernet0/0/1
port link-type hybrid
port hybrid pvid vlan 200
port hybrid untagged vlan 200 1000
dot1x enable
dot1x max-user 1
authentication guest-vlan 1000
dot1x port-method port
#
interface GigabitEthernet0/0/2
port link-type hybrid
port hybrid pvid vlan 200
port hybrid untagged vlan 200 1000
dot1x enable
dot1x max-user 1
authentication guest-vlan 1000
dot1x port-method port