A security engineer is implementing network access control using 802.1X. When a non-compliant device connects, it should be placed in a restricted VLAN allowing only remediation traffic. What is this VLAN called?
Select an answer to reveal the explanation.
Short Explanation and Infographic
Here's the deal — b is correct because in 802.1X NAC deployments, non-compliant or unauthenticated devices are placed in a Quarantine/Remediation VLAN that allows only traffic to remediation servers (antivirus updates, patch servers) while blocking access to the production network until compliance is achieved. A is wrong because a Trunk VLAN carries multiple VLANs between switches; it is not a restricted access category.
Full explanation below image
Full Explanation
B is correct because in 802.1X NAC deployments, non-compliant or unauthenticated devices are placed in a Quarantine/Remediation VLAN that allows only traffic to remediation servers (antivirus updates, patch servers) while blocking access to the production network until compliance is achieved. A is wrong because a Trunk VLAN carries multiple VLANs between switches; it is not a restricted access category. C is wrong because the Native VLAN carries untagged frames on trunk ports; it is a switch configuration concept, not a NAC remediation category. D is wrong because the Management VLAN is used for device management traffic (SSH, SNMP); it is not where non-compliant endpoints are placed.