auth-vlan-mode

Enables the Flexible authentication-enabled ports to be member of multiple untagged VLANs.
Syntax
auth-vlan-mode { multiple-untagged }
no auth-vlan-mode { multiple-untagged }
Command Default

Flexible authentication-enabled port can be member of only one untagged VLAN.

Parameters
multiple-untagged
Allows the client to be assigned to multiple untagged VLANs on authentication.
Modes

Authentication configuration mode

Usage Guidelines

Reload is not required to change the VLAN mode. If the command is applied globally, all sessions will be cleared on all interfaces that have Flexible authentication enabled. However, existing sessions will be cleared if the command is applied on an individual interface using the authentication auth-vlan-mode command from the interface configuration mode.

Single untagged mode is only applicable to untagged VLANs returned by RADIUS.

The no form of the command returns the VLAN mode to single untagged. Port can be assigned to only one untagged VLAN on authentication.

Examples

The following example configures multiple untagged VLAN at the global level.

device# configure terminal
device(config)# authentication
device(config-authen)# auth-vlan-mode multiple-untagged

The following example clears all sessions on interfaces with Flexible authentication enabled and restores the single untagged VLAN mode default on all new sessions established on those interfaces.

device# configure terminal
device(config)# authentication
device(config-authen)# no auth-vlan-mode multiple-untagged
History
Release version Command history
08.0.30b This command was introduced.