Re: [Netpass-users] Quarantine VLAN(s)
Brought to you by:
jeffmurphy
From: Jeff M. <jcm...@os...> - 2005-06-08 15:22:19
|
On Wed, 2005-06-08 at 08:45 -0400, Don Rugh wrote: > Is the "standard" config to run with a single quarantine VLAN and a > single authenticated VLAN? per subnet. at UB, we might have 128.205.100.0/24 enabled for NetPass. we assign 100 as the unquar vlan and 800 as the quar vlan. if we then add 128.205.105.0/24 we'd assign 105 and 805 to that subnet. unlike some similar products, NetPass does not use a single large quarantine vlan for all networks. > Or have some implementations segmented this further??? The sketches > seems to indicate a single VLAN for each, though this could also be > for simplicity in the diagrams... i'll make this more clear on the diagrams. > > > We presently have each residence hall on its own VLAN, and I was > considering leaving it that way and adding a QVLAN for each building. > This approach will complicate the network setup a bit, though... it does, yes, but it made achieving the goal of allowing the client to keep their "normal" IP address at all times easier. |