cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
904
Views
5
Helpful
2
Replies

802.1x auth. on Cisco 3750x

athens45
Level 1
Level 1

after installing 2 switches in a stack.

I'd like to set port security 802.1x 

Local users should authenticate with domain user/pass when they connect to ethernet.

Please assist, we have radius server on 10.253.3.12

 

1 Accepted Solution

Accepted Solutions

Mike.Cifelli
VIP Alumni
VIP Alumni
I strongly recommend checking out design guides, video tutorials, and cisco live presentations to assist you in your endeavor. Here are some helpful links:
https://www.cisco.com/c/en/us/td/docs/solutions/Enterprise/Security/TrustSec_1-99/Dot1X_Deployment/Dot1x_Dep_Guide.html
https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_8021x/configuration/15-e/sec-usr-8021x-15-e-book/config-ieee-802x-pba.html
http://www.labminutes.com/video/sec
Not sure of your requirements, but here are some items that you may want to investigate/consider:
-Do you plan on utilizing C3PL or legacy configuration to implement your config. I personally think most would say to go with C3PL due to several benefits. However, it may seem complex at first. I would research it (http://www.network-node.com/blog/2017/10/7/ise-c3pl-switch-configuration)
-What supplicant do you plan to use (native or anyconnect)
-What security protocols are you planning to use & why
Lastly, here is another Cisco link that contains several white papers that should assist you: https://www.cisco.com/c/en/us/products/ios-nx-os-software/identity-based-networking-services/white-paper-listing.html
Good luck & HTH!

View solution in original post

2 Replies 2

Holger1
Level 1
Level 1

it is not direct Cisco Source but maybe take a deaper look on: https://www.ise-support.com/

 

There you ll find some example configs for switches.

 

Mike.Cifelli
VIP Alumni
VIP Alumni
I strongly recommend checking out design guides, video tutorials, and cisco live presentations to assist you in your endeavor. Here are some helpful links:
https://www.cisco.com/c/en/us/td/docs/solutions/Enterprise/Security/TrustSec_1-99/Dot1X_Deployment/Dot1x_Dep_Guide.html
https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_8021x/configuration/15-e/sec-usr-8021x-15-e-book/config-ieee-802x-pba.html
http://www.labminutes.com/video/sec
Not sure of your requirements, but here are some items that you may want to investigate/consider:
-Do you plan on utilizing C3PL or legacy configuration to implement your config. I personally think most would say to go with C3PL due to several benefits. However, it may seem complex at first. I would research it (http://www.network-node.com/blog/2017/10/7/ise-c3pl-switch-configuration)
-What supplicant do you plan to use (native or anyconnect)
-What security protocols are you planning to use & why
Lastly, here is another Cisco link that contains several white papers that should assist you: https://www.cisco.com/c/en/us/products/ios-nx-os-software/identity-based-networking-services/white-paper-listing.html
Good luck & HTH!