Re: Dynamic VLAN-Assignment per MAC-Database ?!
- From: "Thomas K" <thomas@xxxxxxxxx>
- Date: Wed, 4 Jan 2006 08:19:50 +0100
Wouldnt it be easier to create a set of new AD groups and reference those
new groups in the IAS policies?
The VLAN would be assigned based on the AD group.
Regards,
Thomas
"Eric J." <bt_hirosaito@xxxxxx> wrote in message
news:1135331083.418922.139040@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
Hi,
what i saw is, that you can set up an IAS policy referencing on the
Windows-Group the computer is in.
The problem is not all of the Computers within a single Windows-Group
need the same VLAN.
But we have a Database where all Computers must be registered with
MAC-Adresses and such stuff. Is there a chance if i will add a VLAN-ID
to each computer in the Database that i can reference to this database
in some way ?
Probably this scenario:
Computer with MAC 00:11:22:33:44:55:66 tries to authenticate.
Certificate OK
AD Account OK
Dynamic VLAN-Assignment: -> Look into the Database and assign the VLAN
which is in the Database for this MAC Address.
I read much about all kinds of radius extension-dlls but i don´t know
if its possible to realise something like that.
All kinds of input is appreciated.
Regards,
Eric
.
- Prev by Date: Re: Concern about wireless security
- Next by Date: Policy Condition question
- Previous by thread: Re: Concern about wireless security
- Next by thread: Policy Condition question
- Index(es):
Relevant Pages
|
Loading