Ok that does answer a lot of questions. The main one I have while I wait for my rep to contact me is this. If we purchase the NAC manager http://www.cisco.com/en/US/products/ps6128/index.html Do we need an independent server to run anything or is that box that is going to run everything.
Clean Access Manager (CAM)?The administration server for Clean Access deployment. The secure web console of the Clean Access Manager is the single point of management for up to 20 Clean Access Servers in a deployment. For out-of-band deployment, the web admin console also provides Switch Management capability.
?Clean Access Server (CAS)?Enforcement server between the untrusted (managed) network and the trusted network. The CAS enforces the policies you have defined in the CAM web admin console, including network access privileges, authentication requirements, bandwidth restrictions, and Clean Access system requirements. It can be deployed in- band or out-of-ban.
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...