default-acl
Configures the default ACL for failed, timed-out, or guest user sessions.
Syntax
default-acl
{
ipv4
|
ipv6
}
[
acl-id
|acl-name
]
[
in
|
out
]
no default-acl
{
ipv4
|
ipv6
}
[
acl-id
|acl-name
]
[
in
|
out
]
Parameters
Modes
Flexible-authentication configuration sub-mode
Usage Guidelines
Use the
no form of the command to remove the configurable default ACL.
Use the command to configure a default ACL to be applied to users who failed (restricted VLAN), timed out (critical VLAN), or are guests (not capable of dot1x authentication).
Note: Dynamic modification of a default ACL by adding or deleting ACL rules is not supported.
To modify a default ACL, you must first clear the session.
History
| Release version | Command history |
|---|---|
| 08.0.70 | This command was introduced. |