161/215
www.zyxel.com
5.5.1 Configure 802.1x Port Authentication on the Switch
1
Configure 802.1x on all towards users. Do not enable Port
Authentication on ports to the USG, RADIUS-Server, and
Private-Server. To configure Port Authentication, please refer
to the topic:
5.4 How to Configure the Switch and RADIUS
Server to Provide Network Access through 802.1x Port
Authentication.
5.5.2 Configure VLAN for Guest VLAN
1
Configure the VLAN for Guest VLAN (
VLAN 100
) on Switch.
VLAN 100
: Set fixed port: 1, 2, 3, 30; untagged port: 1, 2, 3, 30;
forbidden port: 31, 32; port 30: pvid=100.
VLAN 1
: Set forbidden
port: 30. For isolating VLAN 1 and 100, please refer to the topic:
2.1 How to configure the switch to separate traffic between
departments
.
5.5.3 Configure Guest VLAN for Failed Authentication
1
Go to
Menu > Advanced Application > Port Authentication >
802.1x > Guest Vlan
. Activate the Guest Vlan on port 1-3 and
type the guest Vlan as
100
. Press “Apply”.
Summary of Contents for GS3700 Series
Page 21: ...21 215 www zyxel com 2 Web GUI Go to Menu Management Maintenance Reboot System Custom Default...
Page 31: ...31 215 www zyxel com...
Page 35: ...35 215 www zyxel com 3 Click Save to save the configuration...
Page 54: ...54 215 www zyxel com 2 Enter Global field and check the TFTP server box...
Page 63: ...63 215 www zyxel com Without Class ID...
Page 79: ...79 215 www zyxel com 2 2 4 Test the Result 1 PC 1 can ping PC 2 successfully...
Page 101: ...101 215 www zyxel com 8 Finally connect the link between Switch 2 and Switch 3...
Page 153: ...153 215 www zyxel com...
Page 192: ...192 215 www zyxel com...
Page 199: ...199 215 www zyxel com...