I have a NAC L3 IB deployment and would like to be able to have a filter based on a host's MAC address to assign them to a role, no authentication...
A router separates the host and the CAS.
If I have the agent installed on the client, it should transmit the MAC/IP combo to the CAS. On the CAS, will it match based on the MAC sent by the agent and place it into the proper role? It would then need to put all packets from that IP into that role, since the MAC transmitted with the packet is the router's.
Any insight appreciated.