AAA is it needed for NAC deplyment ?

Unanswered Question
Nov 26th, 2009
User Badges:

Dear Sirs,

1- I want to deploy a cisco nac solution.I have purchased one nac manager and one nac server. An external aaa server is it mandatory in order to deploy the solution ?

2- Nac deployed in inband mode is it compatible with non cisco switches ? If yes how is authentication done when a user spoofs a cerified lan ip address ? ( in the case of non cisco switches )  


  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Eduardo Aliaga Tue, 12/01/2009 - 21:56
User Badges:
  • Silver, 250 points or more

Hello. Right now I only can answer the first question. I'm going find out about second question.

1) No. An AAA server is not necessary. I'm using Active directory instead.

m_zabetian Fri, 12/04/2009 - 11:54
User Badges:

you can deploy NAC inbound mode without Cisco switches but you need to remember you are not going  to get all the benefit of the  NAC because all the devices on not trusted side can talk to each other (even you have it before default gateway).


This Discussion