Instant On - Wired

 View Only
  • 1.  1930 RADIUS MAC authentication and Guest VLAN

    Posted 07-05-2024 11:12 AM

    We just bought an InstantOn 1930 switch in the hope that we could use it with RADIUS MAC-authentication and have rejected moved to the Guest VLAN, but according to the local web interface on the switch it's not possible to combine those 2 features on the same port. Any chance of seeing support for this being added in the future? 

    I'm a bit disappointed, since this limitation is not mentioned in the Management And Configuration Guide, so we had no idea that this wouldn't work before we bought the switch. I've tried as a workaround to use set an unauthenticated VLAN on the switch instead, but that seems to require that the connect client tags tags packets with the VLAN ID of the unauthenticated VLAN, which defies the purpose of avoiding to do configuration on each client. 



    ------------------------------
    Kristian Sørensen
    ------------------------------


  • 2.  RE: 1930 RADIUS MAC authentication and Guest VLAN

    Posted 07-08-2024 01:57 AM

    Hi Kristian

    Do you have the possibility to let the radius server return the Guest VLAN when the authentication fails? 

    Rgds

    Peter



    ------------------------------
    Peter Neyt
    ------------------------------



  • 3.  RE: 1930 RADIUS MAC authentication and Guest VLAN

    Posted 07-08-2024 02:19 AM

    I can, but if the RADIUS server rejects the user (MAC address), the response containing the fallback VLAN is not a propper EAP response , and I have other switches from another vendor where Dynamic VLAN assignment breaks if I enable this setting on the RADIUS server, so it's ufortunately not a viable option.



    ------------------------------
    Kristian Sørensen
    ------------------------------



  • 4.  RE: 1930 RADIUS MAC authentication and Guest VLAN

    Posted 07-08-2024 02:27 AM

    Hi Kristian

    Ok, as I always use Clearpass I don't have those issues. I'll check your case when I have the chance and report the results.

    Rgds

    Peter



    ------------------------------
    Peter Neyt
    ------------------------------