WiFI EAP-PEAP with VLAN

2008-11-04 Thread Dajka Tamás
Hi all, Is it possible to include a VLAN tag in the reply, so that client is assigned to the appropirate VLAN based on it's auth group ( so, if USER_A is member of GROUP_A, than it's assigned to VLAN_A) Is this possible? Or should be done elsewhere, than the radius? Thanks,

Re: WiFI EAP-PEAP with VLAN

2008-11-04 Thread Paul TAVERNIER
Dajka Tamás wrote: Hi all, Is it possible to include a VLAN tag in the reply, so that client is assigned to the appropirate VLAN based on it's auth group ( so, if USER_A is member of GROUP_A, than it's assigned to VLAN_A) it seems to be vendor specific...For Cisco Tunnel-Type (064): VLAN

Re: WiFI EAP-PEAP with VLAN

2008-11-04 Thread Alan DeKok
Dajka Tamás wrote: Is it possible to include a VLAN tag in the reply, so that client is assigned to the appropirate VLAN based on it's auth group ( so, if USER_A is member of GROUP_A, than it's assigned to VLAN_A) Yes. See your NAS documentation for documentation about what it needs to

Re: WiFI EAP-PEAP with VLAN

2008-11-04 Thread Eric Ying
some NAS will drop the access-accept or remain port close if the vlan provide from radius doesn't match the swith's vlan. eric On Tue, Nov 4, 2008 at 8:59 AM, Alan DeKok [EMAIL PROTECTED]wrote: Dajka Tamás wrote: Is it possible to include a VLAN tag in the reply, so that client is assigned