Dot1X Guest-Vlan - Dell Z9500 Command Reference Manual

Hide thumbs Also See for Z9500:
Table of Contents

Advertisement

dot1x guest-vlan

Configure a guest VLAN for limited access users or for devices that are not 802.1X capable.
Z9500
Syntax
dot1x guest-vlan vlan-id
To disable the guest VLAN, use the no dot1x guest-vlan vlan-id command.
Parameters
vlan-id
Defaults
Not configured.
Command
CONFIGURATION (conf-if-interface-slot/port)
Modes
Command
This guide is platform-specific. For command information about other platforms,
History
refer to the relevant Dell Networking OS Command Line Reference Guide.
The following is a list of the Dell Networking OS version history for this command.
Version
9.2(1.0)
8.3.19.0
8.3.12.0
8.3.11.1
7.6.1.0
Usage
802.1X authentication is enabled when an interface is connected to the switch. If
Information
the host fails to respond within a designated amount of time, the authenticator
places the port in the guest VLAN.
If a device does not respond within 30 seconds, it is assumed that the device is not
802.1X capable. Therefore, a guest VLAN is allocated to the interface and
authentication, for the device, occurs at the next reauthentication interval (dot1x
reauthentication).
If the host fails authentication for the designated number of times, the
authenticator places the port in authentication failed VLAN (dot1x auth-fail-
vlan).
198
Enter the VLAN Identifier. The range is from 1 to 4094.
Description
Introduced on the Z9500.
Introduced on the S4820T.
Introduced on the S4810.
Introduced on the Z9000.
Introduced on the C-Series, E-Series, and S-Series.
NOTE: You can create the Layer 3 portion of a guest VLAN and authentication
fail VLANs regardless if the VLAN is assigned to an interface or not. After an
interface is assigned a guest VLAN (which has an IP address), routing through
the guest VLAN is the same as any other traffic. However, the interface may
join/leave a VLAN dynamically.
802.1X

Advertisement

Table of Contents
loading

Table of Contents