DES-1228/ME Metro Ethernet Managed Switch CLI Reference Guide
409
To assign
VLAN by RADIUS Server
, the proper parameters should be configured on the RADIUS Server. To use
VLAN assignment, RFC3580 defines the following tunnel attributes in RADIUS packets.
The table below shows the parameters for a VLAN:
RADIUS Tunnel Attribute
Description
Value
Usage
Tunnel-Type
This attribute indicates the
tunneling protocol(s) to be
used (in the case of a tunnel
initiator) or the tunneling
protocol in use (in the case of
a tunnel terminatior).
13 (VLAN)
Required
Tunnel-Medium-Type
This attribute indicates the
transport medium being used.
6 (802)
Required
Tunnel-Private-Group-ID
This attribute indicates group
ID for a particular tunneled
session.
A string (VID)
Required
If the user has configured the VLAN attribute of the RADIUS server (for example, VID 3) and the 802.1X
authentication is successful, the port will be added to VLAN 3. However, if the user does not configure the VLAN
attribute and authenticates successfully, the port will be kept in its original VLAN. If the VLAN attribute configured on
the RADIUS server does not exist, the port will not be assigned to the requested VLAN.