Alcatel-Lucent OmniSwitch 6800 Series Network Configuration Manual page 589

Hide thumbs Also See for OmniSwitch 6800 Series:
Table of Contents

Advertisement

Configuring 802.1X
Supplicant Policy Command Example
802.1x 2/10 non-supplicant policy authentication
pass vlan 10 block fail group-mobility default-vlan
802.1x 3/1 non-supplicant policy authentication
pass vlan 10 block fail group-mobility vlan 43
default-vlan
802.1x 3/10 non-supplicant policy vlan 43 block
OmniSwitch 6800/6850/9000 Network Configuration Guide
Configuring Access Guardian Policies
Description
If the MAC authentication process is successful
but does not return a VLAN ID for the device, then
the following occurs:
1
The device is assigned to VLAN 10.
2
If VLAN 10 does not exist, then the device is
blocked from accessing the switch on port
2/10.
If the device fails MAC authentication, then the
following occurs:
1
Group Mobility rules are applied.
2
If Group Mobility classification fails, then the
device is assigned to the default VLAN for
port 2/10.
3
If the default VLAN for port 2/10 is an authen-
ticated VLAN, then the device is blocked from
accessing the switch on port 2/10.
If the MAC authentication process is successful
but does not return a VLAN ID for the device, then
the following occurs:
1
The device is assigned to VLAN 10.
2
If VLAN 10 does not exist, then the device is
blocked from accessing the switch on port 3/1.
If the device fails MAC authentication, then the
following occurs:
1
Group Mobility rules are applied.
2
If Group Mobility classification fails, then the
device is assigned to VLAN 43.
3
If VLAN 43 does not exist or is an authenti-
cated VLAN, then the device is assigned to the
default VLAN for port 3/1.
4
If the default VLAN for port 3/1 is an authenti-
cated VLAN, then the device is blocked from
accessing the switch on port 3/1.
No authentication process is performed.but the fol-
lowing classification still occurs:
1
If VLAN 43 exists and is not an authenticated
VLAN, then the device is assigned to
VLAN 43.
2
If VLAN 43 does not exist or is an authenti-
cated VLAN, then the device is blocked from
accessing the switch on port 3/10.
March 2008
page 27-19

Advertisement

Table of Contents
loading

This manual is also suitable for:

Omniswitch 6850 seriesOmniswitch 9000 series

Table of Contents