I want to have the quarantine type facility in my network.
I do have ACS, 2960, 4500 & 6500 switches etc in my network.
I want any user tries to login to he network has to authenticate via AMC address of the nic card.
The end users mac will be there in the ACS. If he tries to login ACS will authentication & assign him an IP from the DHCP pool from the DHCP server. But if his/her MAC is not there in the ACS, then he will be allocated with a different IP from the dhcp pool created into the switch. In this IP pool only internet access will be available rest will be blocked. This i can achieve by VACL.
Can someone help me to understand whether it will work or not!!!!