Re: Guest Vlan Vs AUth-fail Vlan

From: Brian Landers <brian_at_bluecoat93.org>
Date: Mon, 1 Nov 2010 10:38:23 -0400

On Mon, Nov 1, 2010 at 10:22 AM, GAURAV MADAN <gauravmadan1177_at_gmail.com>wrote:

>
> If my clients are non dot1x capable .. ( say VOIP ph etc ) . Hence I
> intend to use MAB as authentication method ..
>
> What will be used ? Auth-fail vlan ?
>
>
If you have MAB configured on an interface and the authentication fails, the
port will be placed into the guest VLAN if it is configured. If no guest
VLAN is configured, the port will be shutdown.

The restricted/auth-fail VLAN is only used for clients that support 802.1x
and fail an EAPoL login attempt.

-- 
Brian C Landers
http://www.packetslave.com/
CCIE #23115 (R&S + Security)
Blogs and organic groups at http://www.ccie.net
Received on Mon Nov 01 2010 - 10:38:23 ART

This archive was generated by hypermail 2.2.0 : Sun Dec 05 2010 - 22:14:55 ART