CHAPTER 5: SYSTEM CONFIGURATION

A VLAN ID (1-4094) can be assigned to a client after successful IEEE 802.1X authentication. The client VLAN IDs must be configured on the RADIUS server for each user authorized to access the network. If a client does not have a configured VLAN ID on the RADIUS server, the access point assigns the client to the configured default VLAN ID for the VAP interface.

NOTE: When using IEEE 802.1X to dynamically assign VLAN IDs, the access point must have 802.1X authentication enabled and a RADIUS server configured. Wireless clients must also support 802.1X client software.

When setting up VLAN IDs for each user on the RADIUS server, be sure to use the RADIUS attributes and values as indicated in the following table.

Number

RADIUS Attribute

Value

64

Tunnel-Type

VLAN (13)

65

Tunnel-Medium-Type

802

81

Tunnel-Private-Group-ID

VLANID

 

 

(1 to 4094 as hexadecimal or string)

VLAN IDs on the RADIUS server can be entered as hexadecimal digits or a string (see “radius-server vlan-format” on page 63).

NOTE: The specific configuration of RADIUS server software is beyond the scope of this guide. Refer to the documentation provided with the RADIUS server software.

Figure 18 Filter Control - VLAN ID

VLAN – Enables or disables VLAN tagging support on the access point.

Management VLAN ID – The VLAN ID that traffic must have to be able to manage the access point. (Range 1-4094; Default: 1)

5-18

Page 66
Image 66
3Com 3CRWEASYA73, WL-575 manual Filter Control Vlan ID