<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Host Onboarding: Multi-auth/multi-domain mode in Software-Defined Access (SD-Access)</title>
    <link>https://community.cisco.com/t5/software-defined-access-sd-access/host-onboarding-multi-auth-multi-domain-mode/m-p/4434370#M1424</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you don't use 802.1x/MAB, you can use 'no authentication' for host onboarding general page.&lt;/P&gt;&lt;P&gt;Then, on each switchport you will select User Devices for 'Connected Device Type' and 2 data pools:&amp;nbsp;&lt;/P&gt;&lt;P&gt;- Data (Data VLAN)&lt;/P&gt;&lt;P&gt;- Voice (Voice VLAN)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;BR,&lt;/P&gt;&lt;P&gt;Octavian&lt;/P&gt;</description>
    <pubDate>Fri, 16 Jul 2021 12:52:52 GMT</pubDate>
    <dc:creator>Octavian Szolga</dc:creator>
    <dc:date>2021-07-16T12:52:52Z</dc:date>
    <item>
      <title>Host Onboarding: Multi-auth/multi-domain mode</title>
      <link>https://community.cisco.com/t5/software-defined-access-sd-access/host-onboarding-multi-auth-multi-domain-mode/m-p/4433532#M1422</link>
      <description>&lt;P&gt;Hi community!&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm putting together a design for an SDA campus fabric in parallel with my existing campus network, the goal is to mimic the existing network as much as possible. It's a pretty standard 3 tier campus design.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Currently:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;The existing network is all contained within a single VRF and segmented by 2 sets of VLANs, data and voice.&amp;nbsp;&lt;/LI&gt;&lt;LI&gt;There's no current policies in place such as ACL's preventing data/voice VLANs to communicate with each other. So there isn't a requirement for micro-segmentation (for this specific site).&lt;/LI&gt;&lt;LI&gt;Access ports are connected to Cisco IP Phones and these have laptop docks/pc's connected to them.&amp;nbsp;&lt;/LI&gt;&lt;LI&gt;There's no requirement for wired authentication.&amp;nbsp;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;So I essentially have the following config on the current switchports:&lt;/P&gt;&lt;PRE&gt;SW1(config)#&lt;STRONG&gt;interface gig x/y&lt;/STRONG&gt;
SW1(config-if)#&lt;STRONG&gt;switchport mode access&lt;/STRONG&gt;
SW1(config-if)#&lt;STRONG&gt;switchport access vlan 100&lt;/STRONG&gt;
SW1(config-if)#&lt;STRONG&gt;switchport voice vlan 101&lt;/STRONG&gt;
SW1(config-if)#&lt;STRONG&gt;exit&lt;/STRONG&gt;&lt;/PRE&gt;&lt;P&gt;In terms of SDA host onboarding, what the best way to mimic this type of setup?&lt;/P&gt;&lt;P&gt;Given that wired authentication (as of now) is not a requirement, does the Host Onboarding workflow with either the "No Authentication" or "Open Authentication" template allow me to configure both a data and voice VLAN (assuming I've already reserved the data and voice pools) on selected switchports ?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 15 Jul 2021 05:01:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/software-defined-access-sd-access/host-onboarding-multi-auth-multi-domain-mode/m-p/4433532#M1422</guid>
      <dc:creator>dr_wpg</dc:creator>
      <dc:date>2021-07-15T05:01:39Z</dc:date>
    </item>
    <item>
      <title>Re: Host Onboarding: Multi-auth/multi-domain mode</title>
      <link>https://community.cisco.com/t5/software-defined-access-sd-access/host-onboarding-multi-auth-multi-domain-mode/m-p/4434370#M1424</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you don't use 802.1x/MAB, you can use 'no authentication' for host onboarding general page.&lt;/P&gt;&lt;P&gt;Then, on each switchport you will select User Devices for 'Connected Device Type' and 2 data pools:&amp;nbsp;&lt;/P&gt;&lt;P&gt;- Data (Data VLAN)&lt;/P&gt;&lt;P&gt;- Voice (Voice VLAN)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;BR,&lt;/P&gt;&lt;P&gt;Octavian&lt;/P&gt;</description>
      <pubDate>Fri, 16 Jul 2021 12:52:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/software-defined-access-sd-access/host-onboarding-multi-auth-multi-domain-mode/m-p/4434370#M1424</guid>
      <dc:creator>Octavian Szolga</dc:creator>
      <dc:date>2021-07-16T12:52:52Z</dc:date>
    </item>
  </channel>
</rss>

