Small edge switch with 802.1x support

ZYXELSAML
ZYXELSAML Posts: 4  Freshman Member
First Comment
edited September 11 in Switch

Hello,
is there any chance of introducing a product line of small edge switches with 8 (10) ports that support 802.1x functionality?
The XMG1915-10E would be a great choice, but unfortunately, the XX15 series does not support 802.1x.

EDIT: I mean small multigig FANLESS edge switch.

Thank you very much in advance for your reply.
Best regards,
Petr

All Replies

  • Zyxel_Melen
    Zyxel_Melen Posts: 3,775  Zyxel Employee
    Zyxel Certified Network Engineer Level 1 - Switch Zyxel Certified Network Administrator - Switch Zyxel Certified Network Administrator - Nebula Zyxel Certified Sales Associate

    Hi @ZYXELSAML

    Could you share about your scenario? It would help us evaluating your request.

    Zyxel Melen


  • ZYXELSAML
    ZYXELSAML Posts: 4  Freshman Member
    First Comment

    Hello Melen,
    thank you very much for your response.

    The scenario is as follows:
    We have an XS1930s as the central switches on each floor.

    Two Ethernet cables lead into each room. However, there are more employees at the desks. 4-6

    Therefore, a small switch is placed under the desk.
    (Currently, these are some multigig Mikrotiks with fans, which are both noisy and something we’d like to replace with Zyxel for better environment homogeneity.)

    Employees may move between rooms and must be assigned to the correct VLAN.

    Unauthenticated/unauthorized devices must be placed into a guest VLANs.

    The switches must be fanless with 2,5gbit ethernet with 10gbit uplinks.


    If you would have any further question, please let me know.
    Kind regards
    P.

  • PeterUK
    PeterUK Posts: 4,031  Guru Member
    250 Answers 2500 Comments Friend Collector Seventh Anniversary

    I have just started playing around 802.1x and found a interesting hack with Redirect Interface with an old Netgear but Zyxel have the same option called Send the packet to the egress port But one small problem it only work untag which is:

    Pc untag > switch without 802.1x untag > switch with 802.1x and to Authentication Server> tag to router VLAN subnet

    The trick is to Redirect Destination: Nearest-non-TPMR-bridge (01:80:c2:00:00:03) from PC on non 802.1x switch out to 802.1x switch then reply back Redirect Destination: Nearest-non-TPMR-bridge (01:80:c2:00:00:03) from 802.1x switch over the non 802.1x switch to PC

    But now thinking about it this would only allow one PC...you would need Egress Port to send to many ports.