Chapter 14 VLAN
ZyXEL NWA-3100 User’s Guide
165
Figure 98 New Global Security Group
2 In VLAN Group ID Properties, click the Members tab.
• The IAS uses group memberships to determine which user accounts belong to which
VLAN groups. Click the Add button and configure the VLAN group details.
3 Repeat the previous step to add each VLAN group required.
Figure 99 Add Group Members
14.2.4.2 Configuring Remote Access Policies
Once the VLAN Groups have been created, the IAS Remote Access Policy needs to be
defined. This allows the IAS to compare the user account being authenticated against the
group memberships of each VLAN Group.
1 Using the Remote Access Policy option on the Internet Authentication Service
management interface, create a new VLAN Policy for each VLAN Group defined in the
previous section. The order of the remote access policies is important. The most specific
policies should be placed at the top of the policy list and the most general at the bottom.
For example, if the Day-And-Time Restriction policy is still present, it should be moved
to the bottom or deleted to allow the VLAN Group policies to take precedence.