<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Active directory and VLAN match in ZoneDirector</title>
    <link>https://community.ruckuswireless.com/t5/ZoneDirector/Active-directory-and-VLAN-match/m-p/35995#M6431</link>
    <description>Is it possible to change the VLAN of a user based on his/her AD group, using guest pass, captive portal or zero-it? I know that this can be done by authenticating users via 802.1x but we want to know if there's a way to do it using other types of authentication.</description>
    <pubDate>Mon, 28 Apr 2014 04:05:18 GMT</pubDate>
    <dc:creator>erick_muller_65</dc:creator>
    <dc:date>2014-04-28T04:05:18Z</dc:date>
    <item>
      <title>Active directory and VLAN match</title>
      <link>https://community.ruckuswireless.com/t5/ZoneDirector/Active-directory-and-VLAN-match/m-p/35995#M6431</link>
      <description>Is it possible to change the VLAN of a user based on his/her AD group, using guest pass, captive portal or zero-it? I know that this can be done by authenticating users via 802.1x but we want to know if there's a way to do it using other types of authentication.</description>
      <pubDate>Mon, 28 Apr 2014 04:05:18 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/ZoneDirector/Active-directory-and-VLAN-match/m-p/35995#M6431</guid>
      <dc:creator>erick_muller_65</dc:creator>
      <dc:date>2014-04-28T04:05:18Z</dc:date>
    </item>
    <item>
      <title>Re: Active directory and VLAN match</title>
      <link>https://community.ruckuswireless.com/t5/ZoneDirector/Active-directory-and-VLAN-match/m-p/35996#M6432</link>
      <description>DVLAN works by passing attributes to a RADIUS and receiving a reply of a VLAN ID called a "Tunnel-Private-Group-ID" so 1X is required to achieve that.
&lt;BR /&gt;&lt;BR /&gt;
And you can only use 1X with the "Standard usage" or "HotSpot 2.0" Type of WLAN you create and only if choosing WPA or WPA2 (not Mixed).
&lt;BR /&gt;&lt;BR /&gt;
That's because a user needs to authenticate before it gets an IP, so that the proper IP is given to a user, and that can only be achieved if a user is verified at Layer 2. Guest portals and such verify users at Layer 3 when a user already has an IP.</description>
      <pubDate>Mon, 28 Apr 2014 07:23:34 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/ZoneDirector/Active-directory-and-VLAN-match/m-p/35996#M6432</guid>
      <dc:creator>primoz_marinsek</dc:creator>
      <dc:date>2014-04-28T07:23:34Z</dc:date>
    </item>
  </channel>
</rss>

