Concepts
LMA solves dynamic assignment of per client (mac-address) attributes without having to create RADIUS infrastructure. It also allows the user to define authentication polices based on the MAC OUI and MAC/mask, which simplifies management of devices by removing the need to create a policy on a per device basis.
When 802.1X and LMA are enabled on a port, the policy configured for 802.1X takes precedence over LMA.
When LMA and Mac-auth (radius) are enabled on a port, the policy configured for LMA takes precedence over Mac-auth radius.
When only LMA is enabled on a port, client access is subjected to the LMA profile configuration.
applied – a profile applied to a mac-group
provisioned – a profile not applied to a group, however the user can use this profile later
LMA mac-groups group different types of mac entities - mac-address, mac-mask and mac-oui.