DES-7200 Configuration Guide Chapter 4 802.1x Configuration
4-31
The processing steps of receiving the assigned VLAN for the access device are: 1. use the
assigned VLAN attribute as the VLAN name and view that whether there is the same VLAN
name on the access device; 2. if there is the same VLAN name, the port where the user is
swithes to the VLAN automatically; if there is no same VLAN name, then the assigned VLAN
attribute will be used as the VLAn ID; 3. if the VLAN ID is valid(within the VLAN ID range of the
system supported), the port where the user is auto-switches to this VLAN; if the VLAN ID is 0,
no VLAN assignment information exist; 4. except for those conditions mentioned above, the
user authentication is faulty.
Only the ACCESS port and the TRUNK port are supported by the access device for the 802.1x
authentication. In other port modes, it fails to enable the auto-switching function of the dynamic
VLAN. The following describes the conditions of the VLAN auto-switching function on the
ACCESS and TRUNK ports:
VLAN auto-switching function on the ACCESS port
Without the assigned VLAN configured on the device, if the assigned VLAN is identified as the
VLAN ID by the device, the device will create the VLAN with the corresponding VLAN ID and
switch the auth-port to the newly- created VLAN; while if the assigned VLAN is identified as the
VLAN name by the device, the user authentication will be faulty.
With the assigned VLAN configured on the device, if the assigned VLAN is set as the VLAN
not supporting the auto-switching on the ACCESS port, the user authentication will be faulty;
while if the assigned VLAN is set as the VLAN supporting the auto-switching on the ACCESS
port, the user authentication and the auto-switching implementation of the assigned VLAN will
be successful.
The following lists the VLANs not supporting the auto-switching on the ACCESS port:
Private VLAN
Remote VLAN
Super VLAN
Native VLAN configuration on the TRUNK port
For the TRUNK port with the authentication enabled, set the assigned VLAN as the Native
VLAN for the port to be authenticated.
With the assigned VLAN configured on the device, if the assigned VLAN is identified as the
VLAN ID by the device, the Native VLAN for the port to be authenticated will be set as the
assigned VLAN; while if the assigned VLAN is identified as the VLAN name by the device, the
user authentication will be faulty.
With the settings of the assigned VLAN configured on the device, if the assigned VLAN is set
as the VLAN not supporting the auto-switching on the TRUNK port, the user authentication will
be faulty; while if the assigned VLAN is set as the VLAN supporting the auto-switching on the
TRUNK port, the user authentication will be successful and the Native VLAN for the port to be
authenticated will be set as the assigned VLAN.