cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
793
Views
0
Helpful
3
Replies

SD-Access Fabric disable 802.1X for Wired connection

DuNguyen1212
Level 1
Level 1

Hi all,

I have SDA Fabric and all config pushed by DNA Center.

I see DNA Center push config relate to AAA (class-map, policy-map, template, assign template to interface)

I want disable 802.1x only wired connection.

Has anyone done this yet?

 

p/s: i had attach config file push by DNAC

 

Thank you very much for your interest!

3 Replies 3

DuNguyen1212
Level 1
Level 1

I want

Wired client will use MAB

Wireless client use 802.1x

Hi

 There are two ways to execute this. You can do it manually on the switch in ports assignment and chage the security. 

Or you can create a template with necessary command, attach the template to a FIAB and apply to all or some devices. 

Hi DuNguyen1212

So for MAB, ISE is still in place, so you need 802.1x configuration on the switches for wired authentication.

What I did so far in my deployments, you can change the order for the closed authentication template.
MAB first, then 802.1x.

https://www.cisco.com/c/en/us/td/docs/cloud-systems-management/network-automation-and-management/dna-center/2-2-3/user_guide/b_cisco_dna_center_ug_2_2_3/b_cisco_dna_center_ug_2_2_3_chapter_01110.html#task_ct1_syy_tdb

 

802.1x for the wireless client is configured through the SSID configuration

https://www.cisco.com/c/en/us/td/docs/cloud-systems-management/network-automation-and-management/dna-center/2-2-3/user_guide/b_cisco_dna_center_ug_2_2_3/b_cisco_dna_center_ug_2_2_3_chapter_0110.html#concept_3FEDBCEEC2F449CC950ABF06F78FD447

Review Cisco Networking for a $25 gift card