Configuring AAA for network users 607
Nortel WLAN—Security Switch 2300 Series Configuration Guide
To enable keep-initial-vlan, use the following command:
set service-profile name keep-initial-vlan {enable | disable}
Enter this command on the switch that will be roamed to by users.
The following command enables the keep-initial-vlan option on service profile sp3:
WSS# set service-profile sp3 keep-initial-vlan enable
success: change accepted.
When a user connects to a new service-profile which has keep-initial-vlan enabled, a lookup is done in the Mobility
Domain to find out if there is a vlan already assigned to this user. If a vlan had already been assigned to this user, the user
is placed on the same vlan unless there is a VLAN attribute from AAA or a location-policy for that user. SSID default
VLANs do not take precedence over the initial VLAN stored in the Mobility Domain, and are the intended method of
configuring the initial VLAN for the user.
If the user roams to a service-profile that has keep-initial-vlan enabled, but no vlan was previously assigned to that user
on the Mobility Domain, then the user is configured in the same manner as if he were a new user.
If the user roams to a service-profile that has keep-initial-vlan disabled, the vlan assignment is done as in pre 5.0
releases.
Keep-Initial-Vlan is not supported in a Mobility Domain which is mixed WSS Software 5.0 and pre-5.0 versions, and it
does not function across Network Domains.