From: Muhammad Nasim (muhammad.nasim@gmail.com)
Date: Thu Jun 26 2008 - 09:20:01 ART
what do you exactly mean by dividing into vlan 500.
why u put switchport access vlan 500?
ACS suppose to assign vlan number to this port based on sucessfull
authentication or failed authentication.
Also it does not make sense that guest/failed vlan and access vlan are same
2008/6/26 David Lonnie <david.lonnie@gmail.com>:
> Hi, experts:
>
> A question about Dot1x:
>
> Configuration on SW 3560:
>
> interface FastEthernet0/1
> switchport access vlan 500
> switchport mode access
> dot1x pae authenticator
> dot1x port-control auto
> dot1x guest-vlan 500
> dot1x auth-fail vlan 500
>
> i configured dot1x authentication on interface fa0/1 of SW1,and then i
> divide this port into vlan 500.
> does dot1x authentication still works?
>
>
>
>
> David.
>
>
> _______________________________________________________________________
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html
>
>
>
>
>
-- Muhammad Nasim Network Engineer Saudi Arabia
This archive was generated by hypermail 2.1.4 : Tue Jul 01 2008 - 06:23:23 ART