2-37Cisco Catalyst Blade Switch 3130 and 3032 for Dell Command ReferenceOL-13271-03Chapter 2 Cisco Catalyst Blade Switch 3130 and 3032 for Dell Cisco IOS Commandsauthentication port-controlauthentication port-controlUse the authentication port-control interface configuration command to enable manual control of theport authorization state. Use the no form of this command to return to the default setting.authentication port-control {auto | force-authorized | force-un authorized}no authentication port-control {auto | force-authorized | force-un authorized}Syntax DescriptionDefaults The default setting is force-authorized.Command Modes Interface configurationCommand HistoryUsage Guidelines Use the auto keyword only on one of these port types:• Trunk port—If you try to enable IEEE 802.1x authentication on a trunk port, an error messageappears, and IEEE 802.1x is not enabled. If you try to change the mode of an IEEE 802.1x-enabledport to trunk, an error message appears, and the port mode is not changed.• Dynamic ports—A dynamic port can negotiate with its neighbor to become a trunk port. If you tryto enable IEEE 802.1x authentication on a dynamic port, an error message appears, and IEEE 802.1xauthentication is not enabled. If you try to change the mode of an IEEE 802.1x-enabled port todynamic, an error message appears, and the port mode does not change.• Dynamic-access ports—If you try to enable IEEE 802.1x authentication on a dynamic-access(VLAN Query Protocol [VQP]) port, an error message appears, and IEEE 802.1x authentication isnot enabled. If you try to change an IEEE 802.1x-enabled port to dynamic VLAN, an error messageappears, and the VLAN configuration does not change.• EtherChannel port—Do not configure a port that is an active or a not-yet-active member of anEtherChannel as an IEEE 802.1x port. If you try to enable IEEE 802.1x authentication on anEtherChannel port, an error message appears, and IEEE 802.1x authentication is not enabled.auto Enable IEEE 802.1x authentication on the port. The port changes to theauthorized or unauthorized state based, on the IEEE 802.1x authenticationexchange between the switch and the client.force-authorized Disable IEEE 802.1x authentication on the port. The port changes to theauthorized state without an authentication exchange. The port sends andreceives normal traffic without IEEE 802.1x-based authentication of theclient.force-un authorized Deny all access the port. The port changes to the unauthorized state,ignoring all attempts by the client to authenticate. The switch cannotprovide authentication services to the client through the port.Release Modification12.2(50)SE This command was introduced.