Enterasys Networks 9034313-07 manual Show policy maptable, When Policy Maptable Response is Policy

Models: 9034313-07

1 872
Download 872 pages 24.54 Kb
Page 800
Image 800

show policy maptable

If VLAN authorization is not enabled, the tunnel attributes are ignored.

When Policy Maptable Response is “Policy”

When the switch is configured to use only Filter‐ID attributes, by setting the set policy maptable command response parameter to policy:

If the Filter‐ID attributes are present, the specified policy profile will be applied to the authenticating user. If no Filter‐ID attributes are present, or if the policy ID is unknown or invalid, the default policy (if it exists) will be applied.

If the tunnel attributes are present, they are ignored. No VLAN‐to‐policy mapping will occur.

On switches that support policy, the default maptable response mode is policy. On switches that do not support policy, the default maptable response mode is tunnel.

When Policy Maptable Response is “Tunnel”

When the switch is configured to use only tunnel attributes, by setting the set policy maptable command response parameter to tunnel, and if VLAN authorization is enabled both globally and on the authenticating user’s port:

If the tunnel attributes are present, the specified VLAN will be applied to the authenticating user. No VLAN‐to‐policy mapping will occur.

If the tunnel attributes are not present, the default policy VLAN will be applied if it exists. Otherwise, the port VLAN will be applied.

If the Filter‐ID attributes are present, they are ignored.

If VLAN authorization is not enabled, the user will be allowed onto the port with the default policy, if it exists. If no default policy exists, the port VLAN will be applied.

On switches that support policy, the default maptable response mode is policy. On switches that do not support policy, the default maptable response mode is tunnel.

Commands

For information about...

Refer to page...

 

 

show policy maptable

26-54

 

 

set policy maptable

26-55

 

 

clear policy maptable

26-56

 

 

show policy maptable

Use this command to display information about the current VLAN‐to‐policy mapping table and the switch’s policy maptable response setting.

Syntax

show policy maptable [vlan-list]

Parameters

vlan‐list

(Optional) Specifies the VLAN or list of VLANs for which to display the

 

VLAN‐to‐policy settings.

 

 

26-54 Authentication and Authorization Configuration

Page 800
Image 800
Enterasys Networks 9034313-07 manual Show policy maptable, When Policy Maptable Response is Policy