User authentication, accounts, and addressing
In addition, MAC-based filters can also be used to manage access to the network.
Filtering occurs on the AP wireless
Applies to wireless client stations only.
Settings are defined on a per-VSC basis.
Can be used on both access-controlled and
Configured using the Add/Edit Virtual
Service Community configuration page in
the management tool.
MAC addresses are validated against a
custom list for each VSC.
Configuring MAC-based filters on a VSC
MAC-based filter are always applied before MAC-based authentication.
Configuring global MAC-based authentication
You define global MAC-based authentication settings using the Colubris-AVPair value string
mac-address, which you must add to the RADIUS account for the controller. See
MAC-based authentication on page
Although the global MAC-based authentication settings apply to all VSCs that have HTML-
based user logins enabled, each VSC can use a different authentication server to validate user
credentials. To define an authentication server for a VSC, open the Add/Edit Virtual
Service Community page and use the HTML-based user logins box to select the
authentication method. See
MAC authentication is performed before HTML authentication. If MAC authentication fails,
the user's connection is terminated. If it succeeds, and HTML authentication is enabled,
HTML authentication is performed next.
HTML-based user logins on page
Filtering occurs individually on each MSM317
Applies to wired client stations only.
Settings are defined on a per-port basis.
Can only be used when the switch port is not
bound to a VSC.
Configured by selecting Controlled APs >
[MSM317-AP] >> Configuration > Switch
ports > [switch-port] in the management
MAC addresses are validated against a global
list that is defined on the controller and
applies across all devices.
Configuring MAC-based filters on an
MSM317 switch port on page