802.1X Non-Supplicant Policy - Alcatel-Lucent OmniSwitch 6850-48 Cli Reference Manual

Alcatel-lucent omniswitch 6850-48: reference guide
Hide thumbs Also See for OmniSwitch 6850-48:
Table of Contents

Advertisement

802.1X Commands

802.1x non-supplicant policy

Configures a non-supplicant device classification policy for an 802.1x port. This type of policy does not
perform any authentication. A non-supplicant is a device that does not support using the 802.1x protocol
for authentication.
802.1x slot/port non-supplicant policy {group-mobility | user-network-profile profile_name | vlan vid |
default-vlan | block | captive-portal}
Syntax Definitions
slot/port
group-mobility
profile_name
vlan vid
default-vlan
block
captive-portal
Defaults
By default no device classification policies are configured for an 802.1x port.
Platforms Supported
OmniSwitch 6400, 6800, 6850, 6850E, 6855, 9000E
Usage Guidelines
Because this policy does not use 802.1x or MAC authentication, only one classification parameter is
specified and non-supplicants are only classified for assignment to non-authenticated VLANs.
Note that if a non-supplicant policy is not configured for an 802.1x port, then non-supplicants are auto-
matically blocked from accessing the port.
If the captive-portal parameter is specified with this command, then the Captive Portal authentication
policy is applied to non-supplicant traffic. See the
command page for more information.
A User Network Profile (UNP) specifies a VLAN assignment for the device, whether or not Host
Integrity Check (HIC) is required for the device, and if any QoS access control list (ACL) policies are
applied to the device. See the
create a UNP.
Configuring non-supplicant classification policies is only supported on 802.1x enabled mobile ports.
Each 802.1x port can have one supplicant policy and one non-supplicant policy for handling 802.1x
and non-802.1x devices, respectively. Configuring a new supplicant or non-supplicant policy over-
writes any policies that may already exist for the port.
OmniSwitch CLI Reference Guide
The slot and port number of the 802.1x port.
Use Group Mobility rules for device classification.
The name of an existing User Network Profile (UNP) to use for device
classification.
Use this VLAN ID number for device classification.
Assign supplicant to the default VLAN for the 802.1x port.
Block supplicant traffic on the 802.1x port.
Use Captive Portal for web-based device classification.
802.1x captive-portal policy authentication
aaa user-network-profile
June 2012
command page for information about how to
page 35-19

Advertisement

Table of Contents
loading

Table of Contents