Access Guardian Defaults Configuring Access Guardian
page 34-4 OmniSwitch AOS Release 6 Network Configuration Guide September 2009
Access Guardian Defaults
The following default Access Guardian device classification policies are applied when 802.1x is enabled
on a switch port:
Description Keyword Default Policy
Authentication and classification for
802.1x users (802.1x supplicants)
802.1x supplicant policy
authentication
pass: group-mobility, default-vlan
fail: block
Authentication and classification for
non-802.1x users (non-supplicants).
802.1x non-supplicant policy
authentication
block
Authentication and classification for
web-based (Captive Portal) users.
802.1x captive-portal policy
authentication
pass: default-vlan
fail: block
Time limit for a Captive Portal ses-
sion.
802.1x captive-portal session-
limit
12 hours
Number of login attempts allowed
per Captive Portal session.
802.1x captive-portal retry-
count
3 login attempts
IP address for the Captive Portal
login page
802.1x captive-portal address 10.123.0.1
Proxy web server URL for the Cap-
tive Portal user.
802.1x auth-server-down proxy (Captive Portal looks for the
word “proxy” to identify the web
server URL.)