Dot1X Guest-Vlan - 3Com 5500-EI PWR Reference Manual

Hide thumbs Also See for 5500-EI PWR:
Table of Contents

Advertisement

Description
Use the dot1x dhcp-launch command to specify an 802.1x-enabled switch to launch the process to
authenticate a supplicant system when the supplicant system applies for a dynamic IP address through
DHCP.
Use the undo dot1x dhcp-launch command to disable an 802.1x-enabled switch from authenticating
a supplicant system when the supplicant system applies for a dynamic IP address through DHCP.
By default, an 802.1x-enabled switch does not authenticate a supplicant system when the latter applies
for a dynamic IP address through DHCP.
Related commands: display dot1x.
Examples
# Configure to authenticate a supplicant system when it applies for a dynamic IP address through
DHCP.
<Sysname> system-view
System View: return to User View with Ctrl+Z.
[Sysname] dot1x dhcp-launch

dot1x guest-vlan

Syntax
dot1x guest-vlan vlan-id [ interface interface-list ]
undo dot1x guest-vlan [ interface interface-list ]
View
System view, Ethernet port view
Parameters
vlan-id: VLAN ID of a guest VLAN, in the range 1 to 4094.
interface-list: Ethernet port list, in the form of interface-list= { interface-type interface-number [ to
interface-type interface-number ] } &<1-10>, in which interface-type specifies the type of an Ethernet
port and interface-number is the number of the port. The string "&<1-10>" means that up to 10 port lists
can be provided.
Description
Use the dot1x guest-vlan command to enable the guest VLAN function for ports.
Use the undo dot1x guest-vlan command to disable the guest VLAN function for ports.
After 802.1x and guest VLAN are properly configured on a port:
If the switch receives no response from the port after sending EAP-Request/Identity packets to the
port for the maximum number of times, the switch will add the port to the guest VLAN.
Users in a guest VLAN can access the guest VLAN resources without 802.1x authentication.
However, they have to pass the 802.1x authentication to access the external resources.
In system view,
If you do not provide the interface-list argument, these two commands apply to all the ports of the
switch.
1-7

Advertisement

Chapters

Table of Contents
loading

This manual is also suitable for:

5500-ei series

Table of Contents