We have an SSID setup with 802.1x authentication. The Virtual Smart Zone places you in the correct VLAN (Dynamic vlan) depending on your group membership. We want to rate limit one of the VLANs. What is the best solution and is this possible?
The best way to accomplish this is to use SmartZone role-based policy. When you get group membership (group attribute) from RADIUS, you can use that attribute to assign the user/device to a role, which has a User Traffic Profile (UTP) assigned to it. That UTP can contain L3-7 policies as well as rate limiting. Configuration steps are as follows:
create a UTP with the rate limit policy (you can also do this from the role context, so it's an easier UI flow)
create a role and tie that UTP to it
configure your attribute-to-role mapping within the AAA server profile
Hi guys. I have similar issue. One SSID, dynamic vlan with 10 vlans. In each vlan I will have max 5 users. I want to apply rate limit for vlan: 10 Mbps for vlan1, 20 Mbps for vlan2, 30 Mbps for vlan3 and so on. Rate limit I want is for entire vlan, not for single user. I followed Marcus's suggest and I think in point 3 he indicates to create many User Traffic Profile mapping. Group attribute has the same name of group greated on radius server.
After that, do I need to add some configurations on radius server or ruckus SZ? I cannot undestand the indications of Jeronimo.