11-26-2009 12:20 PM - edited 03-10-2019 04:49 PM
Dear Sirs,
1- I want to deploy a cisco nac solution.I have purchased one nac manager and one nac server. An external aaa server is it mandatory in order to deploy the solution ?
2- Nac deployed in inband mode is it compatible with non cisco switches ? If yes how is authentication done when a user spoofs a cerified lan ip address ? ( in the case of non cisco switches )
Thanks.
12-01-2009 09:56 PM
Hello. Right now I only can answer the first question. I'm going find out about second question.
1) No. An AAA server is not necessary. I'm using Active directory instead.
12-04-2009 11:54 AM
you can deploy NAC inbound mode without Cisco switches but you need to remember you are not going to get all the benefit of the NAC because all the devices on not trusted side can talk to each other (even you have it before default gateway).
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide