85
Figure 27 Network diagram for 802.1X with guest VLAN and VLAN assignment configuration
Configuration procedure
NOTE:
The followin
confi
uration procedure covers most AAA/RADIUS confi
uration commands on the device.
The configuration on the 802.1X client and RADIUS server are omitted. For more information about
AA/RADIUS confi
uration commands, see the
Security Command Reference
.
1. Configure the 802.1X client. Make sure the client is able to update its IP address after the access
port is assigned to the guest VLAN or a server-assigned VLAN. (configuration omitted)
2. Configure the RADIUS server to provide authentication, authorization, and accounting services.
Configure user accounts and server-assigned VLAN, VLAN 5 in this example. (configuration
omitted)
3. Create VLANs, and assign ports to the VLANs.
<Device> system-view
[Device] vlan 1
[Device-vlan1] port gigabitethernet 1/0/2
[Device-vlan1] quit
[Device] vlan 10
[Device-vlan10] port gigabitethernet 1/0/1
[Device-vlan10] quit
[Device] vlan 2
[Device-vlan2] port gigabitethernet 1/0/4
[Device-vlan2] quit
[Device] vlan 5