<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: show ports that do not make use of authentication in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/show-ports-that-do-not-make-use-of-authentication/m-p/4731072#M578591</link>
    <description>&lt;P&gt;This was super helpful, I found a easy way to get the information in real time was to simply use&lt;/P&gt;&lt;LI-CODE lang="python"&gt;show dot1x all | include Ethernet&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 01 Dec 2022 16:31:54 GMT</pubDate>
    <dc:creator>MichaelBurk-CCIE50207</dc:creator>
    <dc:date>2022-12-01T16:31:54Z</dc:date>
    <item>
      <title>show ports that do not make use of authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/show-ports-that-do-not-make-use-of-authentication/m-p/4262853#M564450</link>
      <description>&lt;P&gt;Hello all,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is there a way to find out which ports are using dynamic vlan assigment (aaa authentication) and which ones not ? I am working on a migration where we swap 50-60 2960 switches to new 9300's , but the current configuration is not organized and a real mess. I want to bring structure in the new switches. If I can see which switchports are making use of AAA authentication and which ports are manual configured for specific servers or access points for example, I can easily detect these and put them on the new switch in an organized way. Looking forward to your feedback, thank you!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Looking forw&lt;/P&gt;</description>
      <pubDate>Wed, 23 Dec 2020 09:59:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/show-ports-that-do-not-make-use-of-authentication/m-p/4262853#M564450</guid>
      <dc:creator>yayaa</dc:creator>
      <dc:date>2020-12-23T09:59:47Z</dc:date>
    </item>
    <item>
      <title>Re: show ports that do not make use of authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/show-ports-that-do-not-make-use-of-authentication/m-p/4262861#M564452</link>
      <description>&lt;P&gt;check the access port config, if the port is not configured with dot.1x authentication with AAA was just normal access port- if the configuration is against dot1.x - can easily identify the config.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;still confused post one of the switch config we can give you suggestion.&lt;/P&gt;</description>
      <pubDate>Wed, 23 Dec 2020 10:25:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/show-ports-that-do-not-make-use-of-authentication/m-p/4262861#M564452</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2020-12-23T10:25:07Z</dc:date>
    </item>
    <item>
      <title>Re: show ports that do not make use of authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/show-ports-that-do-not-make-use-of-authentication/m-p/4262959#M564455</link>
      <description>&lt;P&gt;If you are trying to determine which ports are enabled for dot1x/mab configuration you could use the following:&lt;/P&gt;
&lt;P&gt;#show authentication sessions&amp;nbsp; (will list session information)&lt;/P&gt;
&lt;P&gt;Are there no descriptions on the interfaces? If there are and/or you know which vlans would be used for APs/servers you can rely on a simple: #show interface status&lt;/P&gt;</description>
      <pubDate>Wed, 23 Dec 2020 13:37:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/show-ports-that-do-not-make-use-of-authentication/m-p/4262959#M564455</guid>
      <dc:creator>Mike.Cifelli</dc:creator>
      <dc:date>2020-12-23T13:37:30Z</dc:date>
    </item>
    <item>
      <title>Re: show ports that do not make use of authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/show-ports-that-do-not-make-use-of-authentication/m-p/4263002#M564457</link>
      <description>&lt;P&gt;Well.. That's the hard &amp;amp; pretty long way to check it &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt; was hoping someone could point out an easy way or quicker way. Unfortunately I am not experienced enough to automate this to get the info quicker. Currently I am thinking of checking it based on the following ways:&lt;BR /&gt;&lt;BR /&gt;show int status | in connected (to see what are the connected devices)&lt;/P&gt;&lt;P&gt;show auth sess ( to check which ports are authenticated)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Then compare and based on what is not shown in the "show auth sess" output, will tell me what ports are not authenticated.&lt;BR /&gt;&lt;BR /&gt;The ports that are not connected and not configured to do authentication, are for me unused ports. Servers, AP's or other important devices should always be connected.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;So I was wondering if there was a command or easier/more efficient way to get this info.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 23 Dec 2020 14:54:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/show-ports-that-do-not-make-use-of-authentication/m-p/4263002#M564457</guid>
      <dc:creator>yayaa</dc:creator>
      <dc:date>2020-12-23T14:54:51Z</dc:date>
    </item>
    <item>
      <title>Re: show ports that do not make use of authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/show-ports-that-do-not-make-use-of-authentication/m-p/4263124#M564463</link>
      <description>&lt;P&gt;&lt;SPAN&gt;I'm sorry, I answered in the wrong place...&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 23 Dec 2020 20:02:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/show-ports-that-do-not-make-use-of-authentication/m-p/4263124#M564463</guid>
      <dc:creator>aukhadiev</dc:creator>
      <dc:date>2020-12-23T20:02:07Z</dc:date>
    </item>
    <item>
      <title>Re: show ports that do not make use of authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/show-ports-that-do-not-make-use-of-authentication/m-p/4263125#M564464</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;During ISE implementation at my work, I used the following method to identify interfaces with configured dot1x functionality:&lt;/P&gt;&lt;P&gt;1) show dot1x all | tee tftp://tftp_server_ip/dot1x.txt&lt;/P&gt;&lt;P&gt;2) export this file to Excel, with Original data type - Delimited, Delimiters - Space&lt;/P&gt;&lt;P&gt;3) apply filter on first column - Dot1x&lt;/P&gt;&lt;P&gt;4) the fourth column will contain the list of interfaces&lt;/P&gt;</description>
      <pubDate>Wed, 23 Dec 2020 20:02:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/show-ports-that-do-not-make-use-of-authentication/m-p/4263125#M564464</guid>
      <dc:creator>aukhadiev</dc:creator>
      <dc:date>2020-12-23T20:02:31Z</dc:date>
    </item>
    <item>
      <title>Re: show ports that do not make use of authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/show-ports-that-do-not-make-use-of-authentication/m-p/4263370#M564467</link>
      <description>&lt;P&gt;Awesome, tested it out and it's exactly what I needed.&lt;BR /&gt;On the excel, when pressing on F5 you can select blank cells, then delete cells upwards and you got a perfect list sorted with the interfaces. Doing the same with show cdp neigh to get AP listed out this way. Thanks a lot for sharing this.&lt;/P&gt;</description>
      <pubDate>Thu, 24 Dec 2020 09:09:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/show-ports-that-do-not-make-use-of-authentication/m-p/4263370#M564467</guid>
      <dc:creator>yayaa</dc:creator>
      <dc:date>2020-12-24T09:09:18Z</dc:date>
    </item>
    <item>
      <title>Re: show ports that do not make use of authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/show-ports-that-do-not-make-use-of-authentication/m-p/4731072#M578591</link>
      <description>&lt;P&gt;This was super helpful, I found a easy way to get the information in real time was to simply use&lt;/P&gt;&lt;LI-CODE lang="python"&gt;show dot1x all | include Ethernet&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 01 Dec 2022 16:31:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/show-ports-that-do-not-make-use-of-authentication/m-p/4731072#M578591</guid>
      <dc:creator>MichaelBurk-CCIE50207</dc:creator>
      <dc:date>2022-12-01T16:31:54Z</dc:date>
    </item>
  </channel>
</rss>

