01-30-2008 11:12 PM - edited 03-10-2019 03:37 PM
Hi!!
I want to have the quarantine type facility in my network.
I do have ACS, 2960, 4500 & 6500 switches etc in my network.
I want any user tries to login to he network has to authenticate via AMC address of the nic card.
The end users mac will be there in the ACS. If he tries to login ACS will authentication & assign him an IP from the DHCP pool from the DHCP server. But if his/her MAC is not there in the ACS, then he will be allocated with a different IP from the dhcp pool created into the switch. In this IP pool only internet access will be available rest will be blocked. This i can achieve by VACL.
Can someone help me to understand whether it will work or not!!!!
01-31-2008 02:13 AM
It should work with MAB setup on the swtich.
Regards,
~JG
01-31-2008 02:26 AM
can i have a sample config for the same!!
01-31-2008 09:13 AM
01-31-2008 08:20 PM
Thanks for replying....
please suggest me whether the kind of solution i am looking for is possible or not!!
01-31-2008 08:24 PM
Should be. With MAC-Auth Bypass, you can authenticate via MAC address check.
This implementation guide may help:
<http://www.cisco.com/univercd/cc/td/doc/solution/macauthb.pdf>
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: