<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: NAC CCA Problem in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/nac-cca-problem/m-p/785293#M777004</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for the quick reply - I actually found my mistake to be the same as posted in the thread "General: NAC appliance troubles under 4.1.1". &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I went back to the CAS and added the L2 subnet as a managed subnet and enabled Layer 3 support. I really don't think I needed to enable Layer 3 support, but I found info stating that it will not be enabled for subnets that are also configured as managed subnets. So I figure no harm no foul. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm using a 3750 as the access switch and have upgraded to the latest. SNMPv3 seems to be working good - boy I wish I had an ACS server right now......&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 09 May 2007 14:08:09 GMT</pubDate>
    <dc:creator>Joshua Warcop</dc:creator>
    <dc:date>2007-05-09T14:08:09Z</dc:date>
    <item>
      <title>NAC CCA Problem</title>
      <link>https://community.cisco.com/t5/network-security/nac-cca-problem/m-p/785291#M777002</link>
      <description>&lt;P&gt;I have a CAM/CAS deployment in L2 OOB - vlan 545 trunked to untrusted and vlan 245 trunked to the trusted side. The switch/device/port profiles are setup via snmpv3. The switchport is not being bounced since the IP address is not being changed from auth vlan to access vlan. I hook a PC up and I get the CCA login page when I try and access a website on the trusted network. I put in some valid credentials and I see the snmp information being sent to the switch. Howerver, the switchport never changes to the access vlan and the CCA login page re-displays itself. What could I be missing here?&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 09:30:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-cca-problem/m-p/785291#M777002</guid>
      <dc:creator>Joshua Warcop</dc:creator>
      <dc:date>2020-02-21T09:30:50Z</dc:date>
    </item>
    <item>
      <title>Re: NAC CCA Problem</title>
      <link>https://community.cisco.com/t5/network-security/nac-cca-problem/m-p/785292#M777003</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Logically I would say that SNMP is not configured correctly. &lt;/P&gt;&lt;P&gt;Could you try to change to version 1 and see if that works? Then you are sure that the NAC appliance is configured correctly.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you tell us what kind of switch you are using as access switch?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you're switch is L3 (on network level, not on NAC level) then C6500 and C4500, no problem. C3750/C3560 must be running 12.2(25)SEE or higher. C3550 is not supported to be in L3.&lt;/P&gt;&lt;P&gt;For more detail, see following matrix: &lt;A class="jive-link-custom" href="http://www.cisco.com/univercd/cc/td/doc/product/vpn/ciscosec/cca/cca40/switch.htm#wp60598" target="_blank"&gt;http://www.cisco.com/univercd/cc/td/doc/product/vpn/ciscosec/cca/cca40/switch.htm#wp60598&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hope this helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 09 May 2007 14:03:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-cca-problem/m-p/785292#M777003</guid>
      <dc:creator>dario.didio</dc:creator>
      <dc:date>2007-05-09T14:03:38Z</dc:date>
    </item>
    <item>
      <title>Re: NAC CCA Problem</title>
      <link>https://community.cisco.com/t5/network-security/nac-cca-problem/m-p/785293#M777004</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for the quick reply - I actually found my mistake to be the same as posted in the thread "General: NAC appliance troubles under 4.1.1". &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I went back to the CAS and added the L2 subnet as a managed subnet and enabled Layer 3 support. I really don't think I needed to enable Layer 3 support, but I found info stating that it will not be enabled for subnets that are also configured as managed subnets. So I figure no harm no foul. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm using a 3750 as the access switch and have upgraded to the latest. SNMPv3 seems to be working good - boy I wish I had an ACS server right now......&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 09 May 2007 14:08:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-cca-problem/m-p/785293#M777004</guid>
      <dc:creator>Joshua Warcop</dc:creator>
      <dc:date>2007-05-09T14:08:09Z</dc:date>
    </item>
  </channel>
</rss>

