User manual

68 Rockwell Automation Publication 1783-UM003I-EN-P - March 2014
Chapter 3 Switch Software Features
Group Users
The network shown in Figure 8 on page 67 provides access to three types of
network users: wired employees, wireless (or mobile) employees, and wired and
wireless company visitors. Each user type requires different access levels to the
company network.
VLANs and security policies on a router or Layer 3 switch can enforce privileges
and restrictions to different user types, as shown in
Figure 8 on page 67:
VLAN 5 offers employee-level access to the company resources. This kind
of network access requires a direct connection to the specific switch ports.
VLAN 7 offers Internet-only access to company visitors. Visitors with
wired or wireless connections to switch ports are assigned to this VLAN,
which automatically restricts guest access to only the Internet.
VLAN 9, which has one or more switch ports connected to the wireless
access point, enforces security policies to identify the wireless user (for
example, as employee or a guest) and to determine what the user can do on
the network (for example, access only the Internet or access other network
resources).