Thanks, but do i need to put an ip on the physical interface?
This would mean that the ip on the physical interface basically goes untagged on the network cable.
Second questions, if we would put for example a guest network on that vlan, directly connected, I guess no route is needed? Is the clearpass doing ip forwarding between the vlans? Meaning, can it be 'abused' as router? Goal is to put a guest portal on a seperate vlan, without giving the possibility to break out of that guest through the clearpass.