Optional) Configuring The Guest Vlan For 802.1X Authentication - Huawei Quidway S3700 Series Configuration Manual

Hide thumbs Also See for Quidway S3700 Series:
Table of Contents

Advertisement

Quidway S3700 Series Ethernet Switches
Configuration Guide - Security
2.4.13 (Optional) Configuring the Guest VLAN for 802.1x
Authentication
Context
When the user access mode is mac and guest VLAN is enabled, the S3700 broadcasts
authentication request packets to all the 802.1x-enabled interfaces. If an interface does not
respond when the maximum number of re-authentications is reached, the S3700 adds this
interface to the guest VLAN. Users in the guest VLAN can access resources in the guest VLAN
without authentication, but must be authenticated when they access external resources. The users
who fail to pass authentication are still allowed to access resources within the specified range.
When the user access mode is port and the interface access control mode is auto, the S3700
adds the interface to the guest VLAN if 802.1x has been enabled in the system view and the
interface view. The users connected to this interface are allowed to access resources in the guest
VLAN without authentication.
You can configure the guest VLAN in the following ways.
Procedure
l
l
----End
Issue 01 (2011-07-15)
NOTE
The configured guest VLAN cannot be the default VLAN of the interface.
In the system view:
1.
Run:
system-view
The system view is displayed.
2.
Run:
dot1x guest-vlan vlan-id interface { interface-type interface-number1
[ to interface-number2 ] } &<1-10>
The guest VLAN is configured on interfaces.
You can configure the guest VLAN on interfaces in batches by specifying the interface
list in the dot1x guest-vlan command in the system view.
In the interface view:
1.
Run:
system-view
The system view is displayed.
2.
Run:
interface interface-type interface-number
The interface view is displayed.
3.
Run:
dot1x guest-vlan vlan-id
The guest VLAN is configured on the interface.
By default, no guest VLAN is configured on an interface.
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
2 NAC Configuration
65

Advertisement

Table of Contents
loading

Table of Contents