Skip to main content
Cisco SD-WAN
Support
Product Documentation
Viptela Documentation

auth-fail-vlan

vpn interface dot1x auth-fail-vlan—Configure an authentication-fail VLAN on an interface running IEEE 802.1X, to provide network access when RADIUS authentication or the RADIUS server fails (on vEdge routers only).

vManage Feature Template

For vEdge routers only:

Configuration ► Templates ► VPN Interface Ethernet

Command Hierarchy

vpn 0
  interface interface-name
    dot1x
      auth-fail-vlan vlan-id

Options

VLAN Identifier
vlan-id
Identifier of the VLAN to be the restricted VLAN.
Range: 1 through 4094

Example

Configure VLAN 30 as the critical VLAN:

bridge 30
 name Critical_VLAN
 vlan 30
 interface ge0/5
  no native-vlan
  no shutdown
 !
!
interface ge0/5
 dot1x
  auth-fail-vlan   30
 !
 no shutdown
!

Release Information

Command introduced in Viptela Software Release 16.3.​

  • Was this article helpful?