Auth Dynamic-Vlan-Creation - Allied Telesis AT-x230-10GP User Manual

X230 series enterprise poe+ gigabit edge switches
Hide thumbs Also See for AT-x230-10GP:
Table of Contents

Advertisement

A
C
UTHENTICATION
OMMANDS
-
-
AUTH DYNAMIC
VLAN
CREATION

auth dynamic-vlan-creation

Overview
This command enables and disables the Dynamic VLAN assignment feature.
The Dynamic VLAN assignment feature allows a supplicant (client device) to be
placed into a specific VLAN based on information returned from the RADIUS server
during authentication, on a given interface.
Use the no variant of this command to disable the Dynamic VLAN assignment
feature.
auth dynamic-vlan-creation [rule {deny|permit}] [type
Syntax
{multi|single}]
no auth dynamic-vlan-creation
Default
By default, the Dynamic VLAN assignment feature is disabled.
Mode
Interface Configuration for a static channel, a dynamic (LACP) channel group, or a
switch port; or Authentication Profile mode.
Usage
If the Dynamic VLAN assignment feature is enabled (disabled by default), VLAN
assignment is dynamic. If the Dynamic VLAN assignment feature is disabled then
RADIUS attributes are ignored and configured VLANs are assigned to ports.
Dynamic VLANs may be associated with authenticated MAC addresses if the type
parameter is applied with the rule parameter.
The rule parameter deals with the case where there are multiple supplicants
attached to a port, and the type parameter has been set to single-vlan. The
parameter specifies how the switch should act if different VLAN IDs end up being
assigned to different supplicants. The keyword value deny means that once a
given VID has been assigned to the first supplicant, then if any subsequent
supplicant is assigned a different VID, that supplicant is rejected. The keyword
value permit means that once a given VID has been assigned to the first
supplicant, then if any subsequent supplicant is assigned a different VID, that
supplicant is accepted, but it is actually assigned the same VID as the first
supplicant.
C613-50104-01 REV A
Parameter
Description
rule
VLAN assignment rule.
deny
Deny a differently assigned VLAN ID. This is the default rule.
permit
Permit a differently assigned VLAN ID.
type
Specifies whether multiple different VLANs can be assigned to
supplicants (client devices) attached to the port, or whether only a
single VLAN can be assigned to supplicants on the port.
multi
Multiple Dynamic VLAN.
single
Single Dynamic VLAN.
Command Reference for x230 Series
AlliedWare Plus™ Operating System - Version 5.4.6-1.x
1034

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

At-x230-18gpAt-x230-28gp

Table of Contents