296
DWS-1008 User’s Manual
D-Link Systems, Inc.
Configuring AAA for Network Users
filter-id
(network access
mode only)
Security access
control list (ACL), to
permit or deny traffic
received (input) or
sent (output) by the
switch.
Name of an existing security ACL,
up to 253 alphanumeric characters,
with no tabs or spaces.
• Use
acl-name
.in
to filter traffic
that enters the switch
from users
via an DWL-8220AP access port
or wired authentication port, or
from the network via a network
port.
• Use
acl-name
.out
to filter traffic
sent from the switch
to users
via
an DWL-8220AP access port
or wired authentication port, or
from the network via a network
port.
Note:
If the Filter-Id value returned
through the authentication and
authorization process does not
match the name of a committed
security ACL in the switch, the user
fails authorization and is unable to
authenticate.
idle-timeout
This option is not implemented in the current MSS
version.
mobility-profile
(network access
mode only)
Mobility Profile
attribute for the
user. (For more
information, see
Configuring a
Mobility Profile.)
Name of an existing Mobility
Profile, which can be up to
32 alphanumeric characters, with
no tabs or spaces.
Note:
If the Mobility Profile feature
is enabled, and a user is assigned
the name of a Mobility Profile that
does not exist on the switch, the
user is denied access.
Summary of Contents for DWS-1008
Page 1: ......