cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
315
Views
5
Helpful
1
Replies

NAC with servers

alex goshtaei
Level 1
Level 1

Hi All,

we are deploying NAC 3310. NAS is in OOB/RIP/L3. we have multiple servers in the network. all switch ports are controlled by NAC and initially they are in authentication VLAN. How can I filter server from not being inspected? our IT guys move cable connected to the servers to the different ports over time. But the problem is when the move cable from one port to another, new port is in authentication VLAN. is NAC automatically changing the VLAN when see server MAC address is in filter list? if not, what is the best solution for this scenario?

any suggestion would be very appreciated.

Alex

1 Reply 1

Faisal Sehbai
Level 7
Level 7

Alex,

Best solution is the simplest one. Put your servers on a switch and don't manage it. If your ethernet cables for the switches will move around, there's no way to tell the CAM to not NAC it.

You could theoratically add the MAC addresses of the servers as IGNORE list, but this is not a good solution, in my humble opinion.

HTH,

Faisal

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card