No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

Fit AP V200R010C00 Command Reference

Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
display access-user

display access-user

Function

The display access-user command displays information about NAC access users.

NOTE:

Only branch APs support this command.

Format

display access-user service-scheme service-scheme

display access-user access-type { dot1x | mac-authen | portal | none }

display access-user event { pre-authen | authen-fail | client-no-response }

display access-user user-group user-group-name [ detail ]

Parameters

Parameter

Description

Value

service-scheme service-scheme

Displays information about users assigned with a specified service scheme.

The value must be the name of an existing service scheme.

access-type

Displays information about users using a specified authentication mode.

-

dot1x

Displays information about users who pass 802.1X authentication.

-

mac-authen

Displays information about users who pass MAC address authentication.

-

portal

Displays information about users who pass Portal authentication.

-

none

Displays information about users whose AAA scheme is non-authentication.

-

event

Displays information about users in a specified authentication phase.

-

pre-authen

Displays information about users in the pre-connection phase.

-

authen-fail

Displays information about users who fail to be authenticated and are assigned network access policies when the authentication server sends authentication failure packets to the device.

-

client-no-response

Displays information about 802.1X authentication users who fail to be authenticated and are assigned network access policies when the 802.1X client does not respond.

-

user-group user-group-name

Displays information about users in a specified user group.

The value must be the name of an existing user group.

detail

Displays detailed user information.

-

Views

All views

Default Level

1: Monitoring level

Usage Guidelines

You can run this command to check information about online NAC users.

Example

# Display information about users who are assigned the service scheme huawei.
<Huawei> display access-user service-scheme huawei
 ------------------------------------------------------------------------------ 
 UserID Username                IP address       MAC            Status          
 ------------------------------------------------------------------------------ 
 16018  zqm                     10.12.12.254     78ac-c0c2-0175 Pre-authen      
 ------------------------------------------------------------------------------ 
 Total: 1, printed: 1  
# Display information about users in the pre-connection phase.
<Huawei> display access-user event pre-authen
 ------------------------------------------------------------------------------ 
 UserID Username                IP address       MAC            Status          
 ------------------------------------------------------------------------------ 
 16018  zqm                     10.12.12.254     78ac-c0c2-0175 Pre-authen      
 ------------------------------------------------------------------------------ 
 Total: 1, printed: 1  
NOTE:

The value of username contains letters, digits, and special characters. It supports English, Chinese, and Russian. The coding format used by the Telnet terminal must be the same as the coding format used by the user name input device. Otherwise, the user name in the language other than English may not be normally displayed.

When the value of username contains special characters or characters in other languages except English, the device displays dots (.) for these characters. If there are more than three such consecutive characters, three dots (.) are displayed. Here, the special characters are the ASCII codes smaller than 32 (space) or larger than 126 (~).

When the value of username is longer than 20 characters, the device displays up to three dots (.) for the characters following 19; that is, only 22 characters are displayed.

Table 13-19  Description of the display access-user command output

Item

Description

UserID ID automatically allocated to an online user by the device.
Username User name.
IP address User IP address.

When both IPv4 and IPv6 addresses exist, only the IPv4 address is recorded.

When only IPv6 addresses exist, only the latest updated IPv6 address is recorded.

MAC User MAC address.
Status User status.
Translation
Download
Updated: 2019-07-18

Document ID: EDOC1100064353

Views: 153494

Downloads: 126

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Share
Previous Next