Skip to main content

Access Policies (Radius) Settings

Location in Dashboard: Switching >> Configure >> Access Policies

Diagram

Classes

switch (meraki.domains.organizations.networks)

NameTypeConstraintMandatoryDefault Value
access_policiesList[access_policies]No

access_policies (meraki.domains.organizations.networks.switch)

NameTypeConstraintMandatoryDefault Value
nameStringmin: 1, max: 127No
radius_serversList[radius_servers]No
radiusClass[radius]No
guest_port_bouncingBooleantrue, falseNo
radius_accounting_serversList[radius_accounting_servers]No
radius_group_attributeChoice``, 11No
host_modeChoiceMulti-Auth, Multi-Domain, Multi-Host, Single-HostNo
access_policy_typeChoice802.1x, Hybrid authentication, MAC authentication bypassNo
increase_access_speedBooleantrue, falseNo
guest_vlan_idAnyInteger[min: 1, max: 4094] or String[matches: `(?:[1-9][1-9][0-9][1-9][0-9]2
dot1xClass[dot1x]No
voice_vlan_clientsBooleantrue, falseNo
url_redirect_walled_garden_rangesListString[min: 1, max: 1024]No
radius_testingBooleantrue, falseNo
radius_coa_supportBooleantrue, falseNo
radius_accountingBooleantrue, falseNo
url_redirect_walled_gardenBooleantrue, falseNo

radius_servers (meraki.domains.organizations.networks.switch.access_policies)

NameTypeConstraintMandatoryDefault Value
hostStringmin: 1, max: 127No
portIntegermin: 1, max: 65535No
secretStringmin: 1, max: 127No
organization_radius_server_nameStringmin: 1, max: 127No
server_nameStringmin: 1, max: 127No

radius (meraki.domains.organizations.networks.switch.access_policies)

NameTypeConstraintMandatoryDefault Value
critical_authClass[critical_auth]No
failed_auth_vlan_idAnyInteger[min: 1, max: 4094] or String[matches: `(?:[1-9][1-9][0-9][1-9][0-9]2
re_authentication_intervalIntegermin: 1, max: 86400No
cacheClass[cache]No

radius_accounting_servers (meraki.domains.organizations.networks.switch.access_policies)

NameTypeConstraintMandatoryDefault Value
hostStringmin: 1, max: 127No
portIntegermin: 1, max: 65535No
secretStringmin: 1, max: 127No
organization_radius_server_nameStringmin: 1, max: 127No
server_nameStringmin: 1, max: 127No

dot1x (meraki.domains.organizations.networks.switch.access_policies)

NameTypeConstraintMandatoryDefault Value
control_directionChoiceboth, inboundNo

critical_auth (meraki.domains.organizations.networks.switch.access_policies.radius)

NameTypeConstraintMandatoryDefault Value
data_vlan_idAnyInteger[min: 1, max: 4094] or String[matches: `(?:[1-9][1-9][0-9][1-9][0-9]2
voice_vlan_idAnyInteger[min: 1, max: 4094] or String[matches: `(?:[1-9][1-9][0-9][1-9][0-9]2
suspend_port_bounceBooleantrue, falseNo

cache (meraki.domains.organizations.networks.switch.access_policies.radius)

NameTypeConstraintMandatoryDefault Value
enabledBooleantrue, falseNo
timeoutIntegermin: 1, max: 24No

Config Sample

meraki:
domains:
- name: EMEA
administrator:
name: Foo Bar
organizations:
- name: Dev
networks:
- name: Dev-main-cx-provider
product_types:
- appliance
- camera
- switch
- wireless
switch:
access_policies:
- name: Test Policy
access_policy_type: Hybrid authentication
dot1x:
control_direction: both
# guest_port_bouncing: false
host_mode: Multi-Auth
increase_access_speed: true
radius:
critical_auth:
suspend_port_bounce: false
radius_accounting: true
radius_accounting_servers:
- host: 100.64.0.230
port: 1813
secret: testing123
radius_coa_support: true
radius_group_attribute: ''
radius_servers:
- host: 100.64.0.230
port: 1812
secret: testing123
radius_testing: true
url_redirect_walled_garden: false
voice_vlan_clients: true