<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Transparent Authentication in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/transparent-authentication/m-p/240955#M6051</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No, this isn't what I'm asking. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Basically, when you plug into a switch, you should get no internet access unless you authenticate. When you plug into the switch, you're in a dead VLAN. When log-in to the domain, the switch forwards the request to the auth server, checks reply, and if valid, switches the vlan on that particular port.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 04 Feb 2004 17:29:27 GMT</pubDate>
    <dc:creator>kowalm</dc:creator>
    <dc:date>2004-02-04T17:29:27Z</dc:date>
    <item>
      <title>Transparent Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/transparent-authentication/m-p/240951#M6035</link>
      <description>&lt;P&gt;I'm looking for a way to transparently authenticate NT/2000/XP users to Active Dir. or Domain Controller (via LDAP). I heard you can setup a cisco switch to authenticate this way; a user hits Ctrl-Alt-Del, enters NT login info, the switch sees this login and sees if the user authenticates with the DC or AD. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Are there any variations to this? Does cisco sell an appliance that does?&lt;/P&gt;&lt;P&gt;I know of MAC based security, but this isn't what i'm looking for. Basically, transparent authetication without adding MACs etc.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 18:09:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/transparent-authentication/m-p/240951#M6035</guid>
      <dc:creator>kowalm</dc:creator>
      <dc:date>2020-02-21T18:09:15Z</dc:date>
    </item>
    <item>
      <title>Re: Transparent Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/transparent-authentication/m-p/240952#M6038</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If the user is hitting ctrl+alt+del and entering authentication info, what the heck are they authenticating against if it is not active directory? &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 03 Feb 2004 19:57:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/transparent-authentication/m-p/240952#M6038</guid>
      <dc:creator>mostiguy</dc:creator>
      <dc:date>2004-02-03T19:57:38Z</dc:date>
    </item>
    <item>
      <title>Re: Transparent Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/transparent-authentication/m-p/240953#M6044</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;A NT 4.0 Domain controller in a mixed mode setting.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 03 Feb 2004 21:29:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/transparent-authentication/m-p/240953#M6044</guid>
      <dc:creator>kowalm</dc:creator>
      <dc:date>2004-02-03T21:29:12Z</dc:date>
    </item>
    <item>
      <title>Re: Transparent Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/transparent-authentication/m-p/240954#M6046</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You can set up a trust between the nt 4 domain and the win2k AD domain&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Feb 2004 14:41:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/transparent-authentication/m-p/240954#M6046</guid>
      <dc:creator>mostiguy</dc:creator>
      <dc:date>2004-02-04T14:41:12Z</dc:date>
    </item>
    <item>
      <title>Re: Transparent Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/transparent-authentication/m-p/240955#M6051</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No, this isn't what I'm asking. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Basically, when you plug into a switch, you should get no internet access unless you authenticate. When you plug into the switch, you're in a dead VLAN. When log-in to the domain, the switch forwards the request to the auth server, checks reply, and if valid, switches the vlan on that particular port.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Feb 2004 17:29:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/transparent-authentication/m-p/240955#M6051</guid>
      <dc:creator>kowalm</dc:creator>
      <dc:date>2004-02-04T17:29:27Z</dc:date>
    </item>
    <item>
      <title>Re: Transparent Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/transparent-authentication/m-p/240956#M6055</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This sounds like you're referring to AAA (authentication, authorization, and accounting)... I know this works for traversing a PIX, but don't know if you can set it up to traverse a switch. The only options I see for AAA on a switch is console|telnet|both.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Feb 2004 21:37:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/transparent-authentication/m-p/240956#M6055</guid>
      <dc:creator>bfl1</dc:creator>
      <dc:date>2004-02-04T21:37:39Z</dc:date>
    </item>
    <item>
      <title>Re: Transparent Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/transparent-authentication/m-p/240957#M6060</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What you're looking for is 802.1x authentication at the switch port level.  Newer Cisco switches do support this at different levels.  You must be using an 802.1x capable OS (XP SP1 or 2k with MS add-on) or load URT (user registration something other)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The feature set in general is referred to as IBNS. (identity based networking services)  It can be done at the machine level using a certificate or at the user level utilizing the logged in credentials.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You'll need a ACS server to accomplish this.  In addition to authentication, you can hand out other things per-group/user such as ACLs and VLAN.  There's also guest support so that unidentified users can be given access to specific things.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The Pix can use AAA to authenticate users as they go through to the Internet and use ACS to determine what access they should have.  This is not transparent as a browser challenge occurs.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Feb 2004 22:26:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/transparent-authentication/m-p/240957#M6060</guid>
      <dc:creator>shannong</dc:creator>
      <dc:date>2004-02-04T22:26:21Z</dc:date>
    </item>
    <item>
      <title>Re: Transparent Authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/transparent-authentication/m-p/240958#M6061</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Cisco has a device which is called URT(secure user reg tool), this can do exactly what you need but you need to configure switches to do this.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 26 Feb 2004 23:52:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/transparent-authentication/m-p/240958#M6061</guid>
      <dc:creator>vinodmorsa</dc:creator>
      <dc:date>2004-02-26T23:52:18Z</dc:date>
    </item>
  </channel>
</rss>

