EasyManua.ls Logo

ZyXEL Communications OLT2406 - Guest VLAN; Port Authentication Configuration

ZyXEL Communications OLT2406
766 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
Chapter 69 Port Authentication
OLT2406 User’s Guide
495
69.1.3 Guest VLAN
When 802.1x port authentication is enabled on the OLT and its ports, clients that do not have the correct
credentials are blocked from using the port(s). You can configure your OLT to have one VLAN that acts
as a guest VLAN. If you enable the guest VLAN (102 in the example) on a port (2 in the example), the
user (A in the example) that is not IEEE 802.1x capable or fails to enter the correct username and
password can still access the port, but traffic from the user is forwarded to the guest VLAN. That is,
unauthenticated users can have access to limited network resources in the same guest VLAN, such as
the Internet. The rights granted to the Guest VLAN depends on how the network administrator
configures switches or routers with the guest network feature.
Figure 262 Guest VLAN Example
69.2 Port Authentication Configuration
The setting descriptions are listed below.
Max-req: Specify the number of times the OLT tries to authenticate client(s) before sending unresponsive
ports to the Guest VLAN.
Reauth: Specify if a subscriber has to periodically re-enter his or her username and password to stay
connected to the port.
Reauth-period: Specify the length of time required to pass before a client has to re-enter his or her
username and password to stay connected to the port.
Quiet-period: Specify the number of seconds the port remains in the HELD state and rejects further
authentication requests from the connected client after a failed authentication exchange.
Tx-period: Specify the number of seconds the OLT waits for client's response before re-sending an
identity request to the client.
Supp-timeout: Specify the number of seconds the OLT waits for client's response to a challenge request
before sending another request.
Internet
VLAN 102
VLAN 100
A
2

Table of Contents

Related product manuals