NAC with servers

Unanswered Question
Nov 16th, 2009

Hi All,

we are deploying NAC 3310. NAS is in OOB/RIP/L3. we have multiple servers in the network. all switch ports are controlled by NAC and initially they are in authentication VLAN. How can I filter server from not being inspected? our IT guys move cable connected to the servers to the different ports over time. But the problem is when the move cable from one port to another, new port is in authentication VLAN. is NAC automatically changing the VLAN when see server MAC address is in filter list? if not, what is the best solution for this scenario?

any suggestion would be very appreciated.


I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 5 (1 ratings)
Faisal Sehbai Mon, 11/16/2009 - 17:53


Best solution is the simplest one. Put your servers on a switch and don't manage it. If your ethernet cables for the switches will move around, there's no way to tell the CAM to not NAC it.

You could theoratically add the MAC addresses of the servers as IGNORE list, but this is not a good solution, in my humble opinion.




This Discussion