<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi Steven- in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/802-1x-in-windows-10-with-hypver-v/m-p/2916571#M40010</link>
    <description>&lt;P&gt;Hi Steven-&lt;/P&gt;
&lt;P&gt;The issues that you are facing are not with the supplicant/client but the network access device (NAD) which in your case is the vSwitch which does not understand/support 802.1x/EAPoL.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;To provide secure access in your scenario you will also need the Nexus 1000v and SGT/SGA/TrustSec.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Have a look at the following link:&lt;/P&gt;
&lt;P&gt;&lt;A href="http://blogs.cisco.com/enterprise/using-trustsec-to-simplify-virtual-desktop-infrastructure-vdi-deployment?_ga=1.71414867.1971257750.1450676310"&gt;http://blogs.cisco.com/enterprise/using-trustsec-to-simplify-virtual-desktop-infrastructure-vdi-deployment?_ga=1.71414867.1971257750.1450676310&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;Thank you for rating helpful posts!&lt;/EM&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 29 Mar 2016 07:32:59 GMT</pubDate>
    <dc:creator>nspasov</dc:creator>
    <dc:date>2016-03-29T07:32:59Z</dc:date>
    <item>
      <title>802.1x in Windows 10 with Hypver-v</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-in-windows-10-with-hypver-v/m-p/2916570#M40009</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I'm trying to get Windows 10 with Hypver-v enabled to successfully complete 802.1x negotiations and posture assessment with Cisco ISE. &amp;nbsp;When Hypver-V is enabled on Windows 10 with an External type vSwitch, the 802.1x service is moved from the physical NIC to the vSwitch nic. &amp;nbsp;The issue I have noticed is that the vSwitch nic does not respond to any EAPOL messages. &amp;nbsp;As a workaround, I have tried to leverage the Cisco NAM module to negotiate 802.1x which does work, but the issue is that the Cisco Anyconnect Network Access Manager Filter Driver does not recognize the existence of the vSwitch nic. &amp;nbsp;&lt;/P&gt;
&lt;P&gt;In the below pic, 802.1x auth completed successfully but anyconnect can't determine the status because the Filter Driver is not functioning on the vSwitch nic.&lt;/P&gt;
&lt;P&gt;&lt;IMG src="https://community.cisco.com/legacyfs/online/media/anyconnectauth.png" class="migrated-markup-image" /&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;vSwitch nic (Filter Driver is there but non functional. &amp;nbsp;If I click the checkbox and then click Ok Windows prompts to disable the driver which is odd. &amp;nbsp;It is as if Windows believes the driver is falsely enabled.)&lt;/P&gt;
&lt;P&gt;&lt;IMG src="https://community.cisco.com/legacyfs/online/media/vswitchnic.png" class="migrated-markup-image" /&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;The physical nic has the Filter Driver enabled but because Windows 10 has moved all the network functionality to the vSwitch nic, Cisco NAM is looking in the wrong place.&lt;/P&gt;
&lt;P&gt;&lt;IMG src="https://community.cisco.com/legacyfs/online/media/surfacebook-physical.png" class="migrated-markup-image" /&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thank you for your help.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 06:34:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-in-windows-10-with-hypver-v/m-p/2916570#M40009</guid>
      <dc:creator>steven austin</dc:creator>
      <dc:date>2019-03-11T06:34:22Z</dc:date>
    </item>
    <item>
      <title>Hi Steven-</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-in-windows-10-with-hypver-v/m-p/2916571#M40010</link>
      <description>&lt;P&gt;Hi Steven-&lt;/P&gt;
&lt;P&gt;The issues that you are facing are not with the supplicant/client but the network access device (NAD) which in your case is the vSwitch which does not understand/support 802.1x/EAPoL.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;To provide secure access in your scenario you will also need the Nexus 1000v and SGT/SGA/TrustSec.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Have a look at the following link:&lt;/P&gt;
&lt;P&gt;&lt;A href="http://blogs.cisco.com/enterprise/using-trustsec-to-simplify-virtual-desktop-infrastructure-vdi-deployment?_ga=1.71414867.1971257750.1450676310"&gt;http://blogs.cisco.com/enterprise/using-trustsec-to-simplify-virtual-desktop-infrastructure-vdi-deployment?_ga=1.71414867.1971257750.1450676310&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;Thank you for rating helpful posts!&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 29 Mar 2016 07:32:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-in-windows-10-with-hypver-v/m-p/2916571#M40010</guid>
      <dc:creator>nspasov</dc:creator>
      <dc:date>2016-03-29T07:32:59Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1x in Windows 10 with Hypver-v</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-in-windows-10-with-hypver-v/m-p/3942088#M40011</link>
      <description>&lt;DIV class="uvUserActionBody"&gt;
&lt;DIV class="typeset"&gt;
&lt;P&gt;It is supported with Windows Server 2019 &amp;amp; Windows 10 version 1809 and above. 802.1x through the Hyper-V vSwitch is supported by making following registry edit:&lt;/P&gt;
&lt;P&gt;Run the following from an elevated command prompt.&lt;/P&gt;
&lt;PRE&gt;reg add “HKEY_LOCAL_MACHINE\&lt;SPAN class="caps"&gt;SYSTEM&lt;/SPAN&gt;\CurrentControlSet\Services\vmsmp\parameters” /v 8021xEnabled /t REG_DWORD /d 1 /f &lt;BR /&gt;shutdown /r /t 0&lt;/PRE&gt;
&lt;P&gt;Source: &lt;A href="https://windowsserver.uservoice.com/forums/295050-virtualization/suggestions/8619418-let-hyper-v-virtual-switch-forward-802-1x-authenti" target="_blank"&gt;https://windowsserver.uservoice.com/forums/295050-virtualization/suggestions/8619418-let-hyper-v-virtual-switch-forward-802-1x-authenti&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;</description>
      <pubDate>Thu, 17 Oct 2019 00:27:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-in-windows-10-with-hypver-v/m-p/3942088#M40011</guid>
      <dc:creator>howon</dc:creator>
      <dc:date>2019-10-17T00:27:54Z</dc:date>
    </item>
  </channel>
</rss>

