
1-11
z
If more than one client are connected to a port, you cannot configure a Guest VLAN for this port.
z
When a Guest VLAN is configured for a port, only one MAC address authentication user can
access the port. Even if you set the limit on the number of MAC address authentication users to
more than one, the configuration does not take effect.
z
The
undo vlan
command cannot be used to remove the VLAN configured as a Guest VLAN. If you
want to remove this VLAN, you must remove the Guest VLAN configuration for it. Refer to the
VLAN module in this manual for the description on the
undo vlan
command.
z
Only one Guest VLAN can be configured for a port, and the VLAN configured as the Guest VLAN
must be an existing VLAN. Otherwise, the Guest VLAN configuration does not take effect. If you
want to change the Guest VLAN for a port, you must remove the current Guest VLAN and then
configure a new Guest VLAN for this port.
z
802.1x authentication cannot be enabled for a port configured with a Guest VLAN.
z
The Guest VLAN function for MAC address authentication does not take effect when port security
is enabled.
Related commands:
mac-authentication timer guest-vlan-reauth
.
Examples
# Configure VLAN 4 as the Guest VLAN for Ethernet 1/0/1.
<Sysname> system-view
System View: return to User View with Ctrl+Z.
[Sysname] interface Ethernet 1/0/1
[Sysname-Ethernet1/0/1] mac-authentication guest-vlan 4
mac-authentication max-auth-num
Syntax
mac-authentication max-auth-num user-number
undo mac-authentication max-auth-num
View
Ethernet port view
Parameters
user-name
: Maximum number of MAC address authentication users allowed to access a port. This
argument is in the range of 1 to 256.
Description
Use the
mac-authentication max-auth-num
command to configure the maximum number of MAC
address authentication users allowed to access the port. After the number of access users has
exceeded the configured maximum number, the switch will not trigger MAC address authentication for
subsequent access users, and thus these subsequent access users cannot access the network
normally.
Содержание 5500-EI Series
Страница 43: ...2 6 ...
Страница 76: ...1 17 ...
Страница 228: ...ii stp transmit limit 1 44 vlan mapping modulo 1 45 vlan vpn tunnel 1 46 ...
Страница 477: ...5 24 Sysname vlan 2 Sysname vlan2 service type multicast ...
Страница 503: ...2 3 System View return to User View with Ctrl Z Sysname dot1x url http 192 168 19 23 ...
Страница 519: ...iii ...
Страница 597: ...2 2 security policy server 192 168 0 1 user name format without domain ...
Страница 648: ...1 9 Examples Clear static ARP entries Sysname reset arp static ...
Страница 663: ...4 3 Sysname resilient arp interface vlan interface 2 ...
Страница 767: ...1 28 From 12 00 Jan 1 2008 to 12 00 Jun 1 2008 ...
Страница 1111: ...ii xmodem get 3 18 ...
Страница 1314: ...A 44 Z ...