Configuring Access Guardian Configuring Access Guardian Policies
OmniSwitch AOS Release 6 Network Configuration Guide September 2009 page 34-29
802.1x 2/12 non-supplicant policy authentication
pass group-mobility captive-portal fail vlan 10
captive-portal
If the MAC authentication process is successful
but does not return a VLAN ID for the device, then
the following occurs:
1 Group Mobility VLAN or UNP mobile rules
are applied.
2 If Group Mobility classification fails, then the
user is prompted to enter a user name and pass-
word through a web-based portal.
If the device fails MAC authentication, then the
following occurs:
1 If VLAN 10 exists and is not an authenticated
VLAN, then the device is assigned to
VLAN 10.
2 If VLAN 10 does not exist or is an authenti-
cated VLAN, then the user is prompted to enter
a user name and password through a web-
based portal.
802.1x 1/9 non-supplicant policy authentication
pass user-network-profile Engineering block fail
vlan 10 captive-portal
If the MAC authentication process is successful
but does not return a VLAN ID for the device, then
the following occurs:
1 The “Engineering” User Network Profile
(UNP) is applied.
2 If applying the UNP fails, the user is blocked
from accessing the switch on port 1/9.
If the device fails MAC authentication, then the
following occurs:
1 If VLAN 10 exists and is not an authenticated
VLAN, then the device is assigned to
VLAN 10.
2 If VLAN 10 does not exist or is an authenti-
cated VLAN, then the user is prompted to enter
a user name and password through a web-
based portal.
802.1x 3/1 non-supplicant policy authentication
fail captive-portal
If MAC authentication does not return a VLAN
ID, the device is blocked from accessing the switch
on port 3/1.
If the device fails 802.1x authentication, then the
user is prompted to enter a user name and pass-
word through a web-based portal.
802.1x 1/8 non-supplicant policy authentication
fail user-network-profile Engineering block
If MAC authentication does not return a VLAN
ID, the device is blocked from accessing the switch
on port 1/8.
If the device fails 802.1x authentication, then the
following occurs:
1 The “Engineering” UNP is applied.
2 If applying the UNP fails, the user is blocked
from accessing the switch on port 1/8.
Supplicant Policy Command Example Description