<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: NAC OOB in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/nac-oob/m-p/675613#M790229</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If DNS is not configured then, can u ping the Untrust Interface IP of the CAS?&lt;/P&gt;&lt;P&gt;Try to browse to the Untrust Interface IP of the CAS "&lt;A class="jive-link-custom" href="https://Untrust-Int-IP" target="_blank"&gt;https://Untrust-Int-IP&lt;/A&gt;" and see whether re-direction happens or not?&lt;/P&gt;&lt;P&gt;Have u configured User pages or not?&lt;/P&gt;&lt;P&gt;Have u configured any user role with "Require use of clean access agent".?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 11 Dec 2008 06:25:51 GMT</pubDate>
    <dc:creator>ramkumar-b</dc:creator>
    <dc:date>2008-12-11T06:25:51Z</dc:date>
    <item>
      <title>NAC OOB</title>
      <link>https://community.cisco.com/t5/network-security/nac-oob/m-p/675609#M790215</link>
      <description>&lt;P&gt;dear all, &lt;/P&gt;&lt;P&gt;I have this outline in my lab:&lt;/P&gt;&lt;P&gt;I use L3 OOB VG,&lt;/P&gt;&lt;P&gt;quarantine VLAn 100(172.16.100.0/24), Access VLAN 10(172.16.10.0/24).&lt;/P&gt;&lt;P&gt;The untrusted interface IP 172.16.100.1&lt;/P&gt;&lt;P&gt;The trusted interface IP 172.16.10.3&lt;/P&gt;&lt;P&gt;Router's interface for Access VLAN 172.16.10.1&lt;/P&gt;&lt;P&gt;and the CAM ip 192.168.1.1/24&lt;/P&gt;&lt;P&gt;When I connect a PC to a switch, the switch changes the port  to VLAN 100 and the PC obtains an IP address 172.16.10.5 which is what I expected.&lt;/P&gt;&lt;P&gt;The problem is that the PC can not get the login page. &lt;/P&gt;&lt;P&gt;Could anyone help please? thanks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 22 Feb 2020 07:16:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-oob/m-p/675609#M790215</guid>
      <dc:creator>phamthecong</dc:creator>
      <dc:date>2020-02-22T07:16:43Z</dc:date>
    </item>
    <item>
      <title>Re: NAC OOB</title>
      <link>https://community.cisco.com/t5/network-security/nac-oob/m-p/675610#M790219</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Did you configure the dns server? If the pc doesn?t resolve the name of the link the authentication page doesn?t work.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 02 Feb 2007 02:51:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-oob/m-p/675610#M790219</guid>
      <dc:creator>gerardtorin</dc:creator>
      <dc:date>2007-02-02T02:51:51Z</dc:date>
    </item>
    <item>
      <title>Re: NAC OOB</title>
      <link>https://community.cisco.com/t5/network-security/nac-oob/m-p/675611#M790223</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You specified that you are OOB VG mode, if this is correct, then only VLAN ID number is translated from your untrusted auth VLAN (100) to your trusted, production VLAN (10) so the IP address obtained from your untrusted VLAN will not have to be renewed or changed when bounced to the VLAN 10 or prod VLAN.  Also, make sure when in the Auth VLAN (100), that your default GW points to the IP address of the CAS, so it sees traffic go through, then the agent will trigger and ask for authentication...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Dominic&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 06 Feb 2007 15:27:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-oob/m-p/675611#M790223</guid>
      <dc:creator>dominic.bilodeau</dc:creator>
      <dc:date>2007-02-06T15:27:57Z</dc:date>
    </item>
    <item>
      <title>Re: NAC OOB</title>
      <link>https://community.cisco.com/t5/network-security/nac-oob/m-p/675612#M790226</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If your configured in VGW then your GW should not point to the CAS at all &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Dec 2008 02:06:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-oob/m-p/675612#M790226</guid>
      <dc:creator>ROBERT WATSON</dc:creator>
      <dc:date>2008-12-10T02:06:13Z</dc:date>
    </item>
    <item>
      <title>Re: NAC OOB</title>
      <link>https://community.cisco.com/t5/network-security/nac-oob/m-p/675613#M790229</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If DNS is not configured then, can u ping the Untrust Interface IP of the CAS?&lt;/P&gt;&lt;P&gt;Try to browse to the Untrust Interface IP of the CAS "&lt;A class="jive-link-custom" href="https://Untrust-Int-IP" target="_blank"&gt;https://Untrust-Int-IP&lt;/A&gt;" and see whether re-direction happens or not?&lt;/P&gt;&lt;P&gt;Have u configured User pages or not?&lt;/P&gt;&lt;P&gt;Have u configured any user role with "Require use of clean access agent".?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 11 Dec 2008 06:25:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-oob/m-p/675613#M790229</guid>
      <dc:creator>ramkumar-b</dc:creator>
      <dc:date>2008-12-11T06:25:51Z</dc:date>
    </item>
  </channel>
</rss>

