09-30-2014 09:34 AM - edited 03-10-2019 10:04 PM
Hi All,
I would like to setup our new offices with dynamic vlans determined by the MAC address of the device connecting. So I need a database of MAC addresses in groups for which vlan they will go in, with separate vlans for printers and servers and computers and BYOD. If this can work for wireless too then even better.
I've done some reading but am really struggling to find the information I need.
We have a Windows domain and brand new 3850 Cisco switches.
Can anyone steer me in the right direction (or tell me how to do it!) please?
Thanks for reading.
10-01-2014 05:40 AM
Hi,
So you need to perform MAB authentication. As you mentioned, you will need to create a DB of MAC entries.
In order to configure the Windows server (2003 or 2008?) to assign the dynamic VLAN you need to define the Remote Access Policies and create the custom attributes. For example:
You can find more information here:
Configure a Network Policy for VLANs
VLAN Attributes Used in Network Policy
HTH.
10-01-2014 09:27 AM
Thanks Javier, nice answer.
Will try it out soon, want to use it in our new offices in December and then roll it out across our 9 sites.
10-01-2014 09:51 AM
Sounds like a plan my friend.
Glad to help.
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: