ZyXEL Communications MES3500-24 User Manual

Page of 349
 Chapter 6 Tutorials
MES3500-24/24F User’s Guide
73
2
Select Active and enter the guest VLAN ID (200 in this example) on ports 1, 2 and 3. The Switch 
puts unauthenticated clients in the specified guest VLAN.
Set Host-mode to Multi-Secure to have the Switch authenticate each client that connects to one 
of these ports, and specify the maximum number of clients that the Switch will authenticate on 
each of these port (5 in this example).
Click Apply.
3
Click the Save link in the upper right corner of the web configurator to save your configuration 
permanently. 
Clients that attach to port 1, 2 or 3 and fail to authenticate with the RADIUS server now should be 
in VLAN 200 and can access the Internet, but cannot communicate with devices in VLAN 1. 
6.6  How to Do Port Isolation in a VLAN
You want to prevent communications between ports in a VLAN but still allow them to access the 
Internet or network resources through the uplink port in the same VLAN. You use private VLAN to