Skip to main content
Cisco SD-WAN
Support
Product Documentation
Viptela Documentation

auth-order

vpn interface dot1x auth-order—Configure the order in which the Viptela software tries different authentication methods when authenticating devices that are attempting to connect to an 802.1X WAN (on vEdge routers only).

The default authentication order is radius, then mab.

vManage Feature Template

For vEdge routers only:

Configuration ► Templates ► VPN Interface Ethernet

Command Hierarchy

vpn vpn-id
  interface interface-name
    dot1x
      auth-order (mab | radius)

Options

MAC Authentication Bypass
mab
Use MAC authentication bypass for authentication, which provides authentication for non-802.1X–compliant devices.
RADIUS Authentication
radius
Use RADIUS servers for authentication.

Example

Configure the router to use MAB authentication before RADIUS authentication:

vpn 0
  interface ge0/0
    dot1x
      auth-order mab radius

Release Information

Command introduced in Viptela Software Release 16.3.​

  • Was this article helpful?