cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
865
Views
0
Helpful
1
Replies

NAC for SSL VPN Users

talha_490
Level 1
Level 1

i have a setup of NAC L2 Out of band Virtual gateway. The inside users are already working on NAC. There is a new requirement for posture assesment of

SSL VPN users. I think that the users are multiple hops away so is that possible to configure the NAC as L2 and L3 at the same time.

Moreover i have oob setup. How the VPN user will be taken by OOB setup.

1 Reply 1

Nevin Absher
Cisco Employee
Cisco Employee

Hi,

A CAS can be configured to support L2 and L3 users at the same time, but it can only be either In-Band or Out of Band.  VPN users are only supported with an In-Band CAS.

So unfortunately for your situation you would either need to add a second CAS, or convert the one you have to In-Band.

Thanks,

Nevin

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: