I wanted to check whether can I have multple Authentication to Access VLAN mapping.
For example :
Authentication VLAN - 111 Map to Trusted VLAN 311
Authentication VLAN - 112 Map to Trusted VLAN 312
Therefore, on the port profile of the switch, I can allocated which are the ports that should be using Authentication VLAN 111 and VLAN 112.
Why I wanted to do this, because I need the users to obtain IP addresses that are associated with the trusted segment, so that I do not have to bounch the switch port or utilise DHCP release/renew from the CCA or web client.
I wanted to avoid role-base mapping. This is because my organisation contains different type of users and they are differential on the network by allocated in different user VLAN. Another requirement is to ahve only one ip addressing scheme for each Auth VLAN to Access VLAN assignment. If I use role-base mapping I shall have to bounch the port or perform a ipconfig /release or /renew.
I wanted to know whether can I have multple Authentication to Access VLAN mapping.
If my NAC server license can only accomodate 500 users. What happen to the 501 user who is trying to log in ?
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...