Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Community Member

How can I add a field in Cisco ACS 3.3 with VLAN?

I'm trying to do Dynamic VLAN Assignment, could you describe what's the best way?

and if possible, how do I set the VLAN fiedl in ACS?

3 REPLIES
Silver

Re: How can I add a field in Cisco ACS 3.3 with VLAN?

In ACS group setup, use RADIUS attributes

64, Tunnel-Type = VLAN

65, Tunnel-Medium-Type = 802

81, Tunnel-Private-Group-Id =

Darran

Community Member

Re: How can I add a field in Cisco ACS 3.3 with VLAN?

and how do I do to use only Macaddress authentication?

Silver

Re: How can I add a field in Cisco ACS 3.3 with VLAN?

Well it depends on whether your access device supports it.

Aironet APs support mac auth, where you put mac addresses instead of userids into ACS.

In NAC, to authenticate clientless endpoints, the switch/router has a feature called "mac auth bypass" where a pre-configured userid+password is sent to ACS along with the client mac address. ACS then applies NARs to filter on mac address.

Its a shame ACS doesnt have a true mac authentication feature.

So the answer really depends on your access device.

167
Views
4
Helpful
3
Replies
CreatePlease to create content