Hi All!
We use 802.1x to secure our LAN and all of our Cisco IP Phones authenticate via EAP-TLS back to our ACS server. The phones are using the MIC to authenticate. I have a few phones where the MIC has expired. What are my options? I really dont want to enter a PW on each one, and I dont want to put each MAC address into ACS.
We have about 450-500 7941s out in the stores right now, so if a few of them are starting to expire, i'm sure it will happen to more in the not too distant future.
I was looking at CAPF, but I dont know if LSC is the way to go... or is it? Can we have CAPF push a LSC to the phones and the phones use that to authenticate?
Thanks.