TGE1> switch port pvid up1 200

IES-5000/5005/6000 Support Notes

For this example, assign VLAN 200(PVID) to ENET1 and ENET2. Also, assign VLAN 10 and VLAN 20 to Port1 and port2 respectively.

CI command:

TGE1> switch port pvid up1 200

TGE1> switch port pvid up2 200

TGE1> port pvc set 7-1-0/33 DEFVAL llc 10 0

TGE1> port pvc set 7-2-0/33 DEFVAL llc 20 0

1.3 Port Isolation

On the IES-5000, you can isolate ports without configuring VLAN groups in the CLI.

CI command:

TGE1> switch isolation enable

2. Prestige 660R-61(P791) Settings

Please refer to the steps in the previous application.

802.1x Application

IEEE 802.1x port-based authentication can be used to prevent unauthorized ports (clients) from gaining access to the network. It is an extended authentication protocol that allows support of RADIUS (Remote Authentication Dial in User Service, RFC2138, 2139) for centralized user profile management on a network RADIUS server.

The following figure shows a network example where the IES-5000 acts as an authenticator to provide 802.1x authentication. In this example, the supplicants (PC1 and PC2) want to gain access to the application server.

68

All contents copyright (c) 2008 ZyXEL Communications Corporation.

Page 69
Image 69
ZyXEL Communications IES-5005 manual 802.1x Application, IES-5000/5005/6000 Support Notes, Prestige 660R-61P791 Settings