The registry of VLANs the appliance can assign dynamically. Define each VLAN with ID (1–4094), name and description; they then appear in the dropdowns of users, groups, policies and captive-portal profiles. Assignment uses standard RADIUS attributes (Tunnel-Private-Group-Id), compatible with any switch/AP that supports dynamic VLAN assignment (RFC 3580).
The switches and access points authorized to talk to the RADIUS service.
On the same page: default authentication method (PEAP-MSCHAPv2 / EAP-TLS / TTLS-PAP), server certificate for EAP, default VLAN, accounting on/off, and CoA (Change of Authorization) on/off.
Every RADIUS configuration change creates a snapshot; if a change breaks something you can roll back to any previous snapshot from here.
An automatic inventory of every MAC address seen on the network, with vendor recognition and group classification.
host/PCNAME and the PC is synced from Entra ID, the Last identity column shows yourdomain.com/PCNAME; the raw RADIUS identity stays in the tooltip.The device group is available as a policy condition — e.g. every CCTV camera goes to VLAN 40 regardless of which port it is plugged into.
The heart of the NAC: rules evaluated in real time at every authentication that decide access and VLAN.
company.com — lets a single appliance route several tenants), NAS client, SSID (wireless), device group (from profiling), device MAC, certificate status, compliance status.A simulation panel: compose the parameters of a hypothetical authentication (user, group, NAS, SSID, MAC…) and see which policy would match and which VLAN would be assigned — without touching the network.
The history of real matches: which policy decided what, and when.
Rules about how subjects authenticate: allowed methods and requirements per user/device category. Same wizard interface (conditions + actions) with its own audit trail.
Session rules per user group: idle timeout, maximum session duration, maximum concurrent sessions, RADIUS re-authentication interval, CoA/Disconnect support. Same wizard interface as the other policy types.