Configuring VLANs for LAN Interfaces

To configure VLAN Virtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN. for LAN Local Area Network. A LAN is a network of connected devices within a distinct geographic area such as an office or a commercial establishment and share a common communications line or wireless link to a server. interfaces on a Branch Gateway, complete the following steps:

  1. To configure a gateway group or a gateway device, complete either one of these steps:
    • To select a gateway group:

      1. In the Classic Central app, set the filter to a group that contains at least one Branch Gateway.

        The dashboard context for a group is displayed.

      2. Under Manage, click Devices > Gateways.

        A list of gateways is displayed in the List view.

      3. Click Config.

        The configuration page is displayed for the selected group.

    • To select a gateway:

      1. In the Classic Central app, set the filter to Global or a group that contains at least one Branch Gateway.

      2. Under Manage, click Devices > Gateways.

        A list of gateways is displayed in the List view.

      3. Click a gateway under Device Name.

        The dashboard context for the gateway is displayed.

      4. Under Manage, click Device.

        The gateway device configuration page is displayed.

  2. If you are in the Basic Mode, click Advanced Mode to access the advanced configuration options.
  3. Click Interface> VLANs.
  4. Select a VLAN from the VLANs table.
  5. Select the WAN Wide Area Network. WAN is a telecommunications network or computer network that extends over a large geographical distance.-facing VLAN ID from the VLAN IDs table.
  6. Under the IPv4 tab configure the following parameters:
    1. Select the Enable routing option.
    2. Select Static from the IP assignment drop-down list. If you configure the VLANs at the group level, you can also choose Dynamic DHCP Pool. This option is not applicable for device level configuration.
    3. Enable Relay to external option.
    4. Add the IP address of the RADIUS Remote Authentication Dial-In User Service. An Industry-standard network access protocol for remote authentication. It allows authentication, authorization, and accounting of remote users who want to access network resources.  server to which you want to relay the DHCP Dynamic Host Configuration Protocol. A network protocol that enables a server to automatically assign an IP address to an IP-enabled device from a defined range of numbers configured for a given network.  requests in the DHCP helper table.
    5. Under Other option, ensure to apply a AAA Authentication, Authorization, and Accounting. AAA is a security framework to authenticate users, authorize the type of access based on user credentials, and record authentication events and information about the network access and network resource consumption. profile to the VLAN from the AAA Profile drop-down list. Alternately, you can assign a AAA profile to the VLAN interface from the Apply Policies tab under Gateway Management > Security. For more information, see Applying Policies to Gateway Interfaces.
  7. Save the changes.