Interfaces Local Area Networks (LANs)
IX30 User Guide
158
Note The IX30 can function as an 802.1x authenticator; it does not function as an 802.1x
supplicant.
a. Enable the 802.1x authenticator on the IX30 device:
(config network interface my_lan)> 802_1x authentication enable true
(config network interface my_lan)>
b. Set the frequency period for reauthorization:
(config network interface my_lan)> 802_1x authentication reauth_period
value
(config network interface my_lan)>
where value is an integer between 0 and 86400. The default is 3600.
9. (Optional) Configure the MAC address deny list.
Incoming packets will be dropped from any devices whose MAC addresses is included in the
MAC address denylist.
a. Add a MACaddress to the denylist:
(config network interface my_lan)> add mac_denylist end mac_address
(config network interface my_lan)>
where mac_address is a hyphen-separated MAC address, for example, 32-A6-84-2E-81-58.
b. Repeat for each additional MACaddress.
10. (Optional) Configure the MAC address allowlist.
If allowlist entries are specified, incoming packets will only be accepted from the listed MAC
addresses.
a. Add a MACaddress to the allowlist:
(config network interface my_lan)> add mac_allowlist end mac_address
(config network interface my_lan)>
where mac_address is a hyphen-separated MAC address, for example, 32-A6-84-2E-81-58.
b. Repeat for each additional MACaddress.
11. Save the configuration and apply the change:
(config network interface my_lan)> save
Configuration saved.
>
12. Type exit to exit the Admin CLI.
Depending on your device configuration, you may be presented with an Access selection
menu. Type quit to disconnect from the device.
Configure the WAN/ETH1 port as a LAN or in a bridge
By default, the WAN/ETH1 Ethernet port on your IX30 is configured to function as a WAN port, which
means that it: