Chapter 6 Tutorials

2Select Active and enter the guest VLAN ID (200 in this example) on ports 1, 2 and 3. The Switch puts unauthenticated clients in the specified guest VLAN.

Set Host-modeto Multi-Secureto have the Switch authenticate each client that connects to one of these ports, and specify the maximum number of clients that the Switch will authenticate on each of these port (5 in this example).

Click Apply.

3Click the Save link in the upper right corner of the web configurator to save your configuration permanently.

Clients that attach to port 1, 2 or 3 and fail to authenticate with the RADIUS server now should be in VLAN 200 and can access the Internet, but cannot communicate with devices in VLAN 1.

6.6How to Do Port Isolation in a VLAN

You want to prevent communications between specific ports in a VLAN but still allow them to access the Internet or network resources in the same VLAN. You use

 

85

XGS-4526/4528F/4728F User’s Guide