ZyXEL Communications G-3000H User Manual
G-3000H User’s Guide
Chapter 9 VLAN
119
• The IAS uses group memberships to determine which user accounts belong to which
VLAN groups. Click the Add button and configure the VLAN group details.
3 Repeat the previous step to add each VLAN group required.
Figure 61 Add Group Members
9.2.2.2 Configuring Remote Access Policies
Once the VLAN Groups have been created, the IAS Remote Access Policy needs to be
defined. This allows the IAS to compare the user account being authenticated against the
group memberships of each VLAN Group.
defined. This allows the IAS to compare the user account being authenticated against the
group memberships of each VLAN Group.
1 Using the Remote Access Policy option on the Internet Authentication Service
management interface, create a new VLAN Policy for each VLAN Group defined in the
previous section. The order of the remote access policies is important. The most specific
policies should be placed at the top of the policy list and the most general at the bottom.
For example, if the Day-And-Time Restriction policy is still present, it should be moved
to the bottom or deleted to allow the VLAN Group policies to take precedence.
previous section. The order of the remote access policies is important. The most specific
policies should be placed at the top of the policy list and the most general at the bottom.
For example, if the Day-And-Time Restriction policy is still present, it should be moved
to the bottom or deleted to allow the VLAN Group policies to take precedence.
• Right click Remote Access Policy and select New Remote Access Policy.
• Enter a Policy friendly name that describes the policy. Each Remote Access Policy will
• Enter a Policy friendly name that describes the policy. Each Remote Access Policy will
be matched to one VLAN Group. An example may be, Allow - VLAN 10 Policy.
• Click Next.