<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ACS with AD-with twin authentication in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/acs-with-ad-with-twin-authentication/m-p/1823409#M272685</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The wording on this is a little tricky, this means for machine authentication to work (PEAP or EAP-tls) you have to allow the protocol in the rule for it to work on the ACS side. When you click the on the service selection rule for default network access, you will the different protocol boxes checked.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps,&lt;/P&gt;&lt;P&gt;Tarik Admani&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sun, 27 Nov 2011 03:48:34 GMT</pubDate>
    <dc:creator>Tarik Admani</dc:creator>
    <dc:date>2011-11-27T03:48:34Z</dc:date>
    <item>
      <title>ACS with AD-with twin authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-with-ad-with-twin-authentication/m-p/1823406#M272680</link>
      <description>&lt;P&gt;Hi Gurus&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I want to integrate my ACS 5.1 with AD, My request is to check for the machine authentication first. If the machine authentication passes the client username/password should be validated and client should be put in vlan X . If the machine authentication fails, the client username/password should be validated. If the authentication passes the client should be put in vlan Y&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know if this is possible&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;NikhiL &lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 01:34:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-with-ad-with-twin-authentication/m-p/1823406#M272680</guid>
      <dc:creator>nikhilcherian</dc:creator>
      <dc:date>2019-03-11T01:34:51Z</dc:date>
    </item>
    <item>
      <title>ACS with AD-with twin authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-with-ad-with-twin-authentication/m-p/1823407#M272681</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Nikhil,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can setup a condition in your authorization policy and check if the machine authentication was performed and base your result off this condition.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is a guide that fits your questions:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_system/5.1/user/guide/users_id_stores.html#wp1235978"&gt;http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_system/5.1/user/guide/users_id_stores.html#wp1235978&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks,&lt;/P&gt;&lt;P&gt;Tarik Admani&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 26 Nov 2011 16:51:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-with-ad-with-twin-authentication/m-p/1823407#M272681</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2011-11-26T16:51:49Z</dc:date>
    </item>
    <item>
      <title>ACS with AD-with twin authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-with-ad-with-twin-authentication/m-p/1823408#M272683</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Tarik, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; Thansks for the reply.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;below is a line i found in the doc.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="color: #000000; font-family: Arial, Helvetica, sans-serif; font-size: 12px; margin-bottom: 7px; margin-left: 0.25in; margin-right: 0em; text-decoration: none; text-indent: -0.25in; background-color: #ffffff;"&gt;&lt;IMG border="0" height="2" src="http://www.cisco.com/en/US/i/templates/blank.gif" width="19" /&gt;Administrator can configure whether or not MAR is enabled in the AD settings page. However for MAR to work the following limitations must be taken into account:&lt;/P&gt;&lt;P&gt; &lt;A name="wp1235152" style="color: #000000; font-family: Arial, Helvetica, sans-serif; background-color: #ffffff;"&gt;&lt;/A&gt;&lt;/P&gt;&lt;P style="color: #000000; font-family: Arial, Helvetica, sans-serif; font-size: 12px; margin-bottom: 7px; margin-left: 0.55in; margin-right: 0em; text-decoration: none; text-indent: -0.25in; background-color: #ffffff;"&gt;–&lt;IMG border="0" height="2" src="http://www.cisco.com/en/US/i/templates/blank.gif" width="17" /&gt;Machine authentication must be enabled in the authenticating protocol settings&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Does this say the authenticator should enable mac-auth &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;NikhiL&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 26 Nov 2011 17:04:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-with-ad-with-twin-authentication/m-p/1823408#M272683</guid>
      <dc:creator>nikhilcherian</dc:creator>
      <dc:date>2011-11-26T17:04:43Z</dc:date>
    </item>
    <item>
      <title>ACS with AD-with twin authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-with-ad-with-twin-authentication/m-p/1823409#M272685</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The wording on this is a little tricky, this means for machine authentication to work (PEAP or EAP-tls) you have to allow the protocol in the rule for it to work on the ACS side. When you click the on the service selection rule for default network access, you will the different protocol boxes checked.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps,&lt;/P&gt;&lt;P&gt;Tarik Admani&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 27 Nov 2011 03:48:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-with-ad-with-twin-authentication/m-p/1823409#M272685</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2011-11-27T03:48:34Z</dc:date>
    </item>
  </channel>
</rss>

