<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: 802.1x Mac-Adress Based Authentication in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/802-1x-mac-adress-based-authentication/m-p/495514#M429096</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;mhernandez11 &lt;/P&gt;&lt;P&gt;  You could use VMPS which is mac-address authentication for those fixed devices. You would have to track the ports down and change the port type to "switchport access vlan dynamic".  The other thing that comes to mind is switchport port security for the printers.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Bob&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 24 May 2005 23:51:39 GMT</pubDate>
    <dc:creator>rmihalcin</dc:creator>
    <dc:date>2005-05-24T23:51:39Z</dc:date>
    <item>
      <title>802.1x Mac-Adress Based Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-mac-adress-based-authentication/m-p/495513#M429095</link>
      <description>&lt;P&gt;I am wondering if we are going to see or now have the ability to authenticate hosts on the lan with something other than a Username / Password? I am mostly concerned with ports on my network that the end device is a non 802.1x compliant device. Anyone have any insight as to what others are doing? Currently i am running ACS 3.3.2 and I am very succesful in deploying 802.1x to ports on my LAN, however we run a mix of unix based devices which are vendor supported and printers are another source of concern.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;??? &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 21:09:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-mac-adress-based-authentication/m-p/495513#M429095</guid>
      <dc:creator>mhernandez11</dc:creator>
      <dc:date>2019-03-10T21:09:54Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1x Mac-Adress Based Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-mac-adress-based-authentication/m-p/495514#M429096</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;mhernandez11 &lt;/P&gt;&lt;P&gt;  You could use VMPS which is mac-address authentication for those fixed devices. You would have to track the ports down and change the port type to "switchport access vlan dynamic".  The other thing that comes to mind is switchport port security for the printers.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Bob&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 24 May 2005 23:51:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-mac-adress-based-authentication/m-p/495514#M429096</guid>
      <dc:creator>rmihalcin</dc:creator>
      <dc:date>2005-05-24T23:51:39Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1x Mac-Adress Based Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-mac-adress-based-authentication/m-p/495515#M429097</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;VMPS is not available on ciscoIOS on switches. All of our switches are running in nativemode (ciscoios) so we lost all VMPS capabilities, only 802.1x remains.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 May 2005 00:52:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-mac-adress-based-authentication/m-p/495515#M429097</guid>
      <dc:creator>mhernandez11</dc:creator>
      <dc:date>2005-05-25T00:52:58Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1x Mac-Adress Based Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-mac-adress-based-authentication/m-p/495516#M429098</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;mhernandez11&lt;/P&gt;&lt;P&gt;  The vmps "server" has to be catalyst OS, not the client switches. The "switchport" command is native IOS.I don't know how may devices you have, but you just need to run catalyst code on 1 or 2 switches as the servers. &lt;/P&gt;&lt;P&gt;  And how about switchport security?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Bob&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 26 May 2005 01:13:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-mac-adress-based-authentication/m-p/495516#M429098</guid>
      <dc:creator>rmihalcin</dc:creator>
      <dc:date>2005-05-26T01:13:40Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1x Mac-Adress Based Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-mac-adress-based-authentication/m-p/495517#M429099</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;We have absolutely no devices running catOS, thats the reason i am wondering about 802.1x because we are succesfully deploying that amongst all of end point devices. I have read that in wireless there is MAC address based authentication through leap.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 26 May 2005 11:15:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-mac-adress-based-authentication/m-p/495517#M429099</guid>
      <dc:creator>mhernandez11</dc:creator>
      <dc:date>2005-05-26T11:15:13Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1x Mac-Adress Based Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-mac-adress-based-authentication/m-p/495518#M429100</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Bob, mhernandez11,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Depends too, on how big your VMPS config database is...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It can get unmanageable and in my (little) experience requires constant watching.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Josef.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 26 May 2005 11:20:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-mac-adress-based-authentication/m-p/495518#M429100</guid>
      <dc:creator>Josef Oduwo</dc:creator>
      <dc:date>2005-05-26T11:20:52Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1x Mac-Adress Based Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-mac-adress-based-authentication/m-p/495519#M429101</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It is a management nightmare. Additionally i am concerned about the mac address based authentication in 802.1x because of the same issues however it will be a smaller group of devices such as printers and other non compliant equipment.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 26 May 2005 11:51:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-mac-adress-based-authentication/m-p/495519#M429101</guid>
      <dc:creator>mhernandez11</dc:creator>
      <dc:date>2005-05-26T11:51:35Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1x Mac-Adress Based Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-mac-adress-based-authentication/m-p/495520#M429102</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;We had pretty good luck using a Cold Fusion front end that forces users to authenticate with their AD credentials. It pulls the MAC address and host name and  user/machine details and puts them in an ODBC database.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We modified the sample stub routine to have the CSDB stub routine add the MAC to the local database in the PAP field.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kind of a nice compromise of identity and machine based authentication without the complexities of PEAP/EAP-FAST etc.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 27 May 2005 00:17:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-mac-adress-based-authentication/m-p/495520#M429102</guid>
      <dc:creator>ericds</dc:creator>
      <dc:date>2005-05-27T00:17:36Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1x Mac-Adress Based Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-mac-adress-based-authentication/m-p/495521#M429103</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Eric,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sounds like you have a pretty nifty operation going there.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Was it written inhouse? How much effort do you put in maintaining the database?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;JG.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 27 May 2005 14:12:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-mac-adress-based-authentication/m-p/495521#M429103</guid>
      <dc:creator>jasper.grennigan</dc:creator>
      <dc:date>2005-05-27T14:12:10Z</dc:date>
    </item>
  </channel>
</rss>

