Specifications

Configuring VLAN Authorization (RFC 3580)
21-42 Security Configuration
Configuring VLAN Authorization (RFC 3580)
Purpose
Pleaseseesection331ofRFC3580fordetailsonconfiguringaRADIUSservertoreturnthe
desiredtunnelattributes.FromRFC3580,“...itmaybedesirabletoallowaporttobeplacedintoa
particularVirtualLAN(VLAN),definedin[IEEE8021Q],based ontheresultofthe
authentication.”
TheRADIUSservertypicallyindicatesthedesiredVLANbyinclud ingtunnelattributeswithin
theAccessAccept.However,theIEEE802.1XAuthenticatormayalsoprovideahintastothe
VLANtobeassignedtotheSupplicantbyincludingTunnelattributeswithintheAccessRequest.
ForuseinVLANassignment,the
followingtunnelattributesareused:
•TunnelType=VLAN(13)
•TunnelMediumType=802
•TunnelPrivateGroupID=VLANID
Commands
ThecommandsusedtoconfigureRADIUStunnelattributesarelistedbelow.
For information about... Refer to page...
set vlanauthorization 21-43
set vlanauthorization egress 21-43
clear vlanauthorization 21-44
show vlanauthorization 21-45