Configuring 802.1x 397Network diagramFigure 105 Network diagram for 802.1x PEAP configurationConfiguration procedureThe following configurations assume that PEAP is selected on 802.1x clients and theRADIUS server to authenticate 802.1x supplicant systems.Configure the switch.1 Enter system view. system-view2 Enable 802.1x globally.[S5500] dot1x3 Enable 802.1x for Ethernet1/0/1 port.[S5500] dot1x interface ethernet 1/0/14 Configure to use 802.1x PEAP to authenticate supplicant systems.[S5500] dot1x authentication-method eap5 Enter Ethernet1/0/1 port view.[S5500] interface ethernet 1/0/16 Configure the port to operate in MAC address-based authentication mode. (Bydefault, a port operates in MAC address-based authentication mode.)[S5500] dot1x port-method macbasedSetting the MaximumTimes of AuthenticationRequest MessageRetransmissionThe following commands are used for setting the maximum retransmission times ofthe authentication request message that the Switch sends to the user.Perform the following configurations in System View.Table 420 Setting the Maximum Times of the Authentication Request MessageRetransmissionBy default, the max-retry-value is 3. That is, the Switch can retransmit theauthentication request message to a user for a maximum of 3 times.Supplicant systemAuthentication Servers(RADIUS Server ClusterIP Address: 10.11.1.110.11.1.2)InternetAuthenticatorSw itchInternetInternetE1/0/1 InternetInternetSupplicant systemAuthentication Servers(RADIUS Server ClusterIP Address: 10.11.1.110.11.1.2)InternetAuthenticatorSw itchSupplicant systemAuthentication Servers(RADIUS Server ClusterIP Address: 10.11.1.110.11.1.2)InternetAuthenticatorSw itchInternetInternetInternetE1/0/1 InternetE1/0/1 InternetInternetOperation CommandSet the maximum times of the authenticationrequest message retransmissiondot1x retry max_retry_valueRestore the default maximum retransmission times undo dot1x retry