I can, but if the RADIUS server rejects the user (MAC address), the response containing the fallback VLAN is not a propper EAP response , and I have other switches from another vendor where Dynamic VLAN assignment breaks if I enable this setting on the RADIUS server, so it's ufortunately not a viable option.
------------------------------
Kristian Sørensen
------------------------------
Original Message:
Sent: 07-08-2024 01:56 AM
From: peter@neyt.eu
Subject: 1930 RADIUS MAC authentication and Guest VLAN
Hi Kristian
Do you have the possibility to let the radius server return the Guest VLAN when the authentication fails?
Rgds
Peter
------------------------------
Peter Neyt
Original Message:
Sent: 06-26-2024 08:01 AM
From: kriller
Subject: 1930 RADIUS MAC authentication and Guest VLAN
We just bought an InstantOn 1930 switch in the hope that we could use it with RADIUS MAC-authentication and have rejected moved to the Guest VLAN, but according to the local web interface on the switch it's not possible to combine those 2 features on the same port. Any chance of seeing support for this being added in the future?
I'm a bit disappointed, since this limitation is not mentioned in the Management And Configuration Guide, so we had no idea that this wouldn't work before we bought the switch. I've tried as a workaround to use set an unauthenticated VLAN on the switch instead, but that seems to require that the connect client tags tags packets with the VLAN ID of the unauthenticated VLAN, which defies the purpose of avoiding to do configuration on each client.
------------------------------
Kristian Sørensen
------------------------------