02-14-2007 12:25 AM - edited 03-10-2019 02:59 PM
hello all,
i've an ACS 4.1 solution engine. i would like to implement 802.1x on my 26 switches which are connecting to 6500 core. so in this scenario where should i place the ACS 4.1 box.
and in edge switches what all things i've to do, enabling 802.1x and enable AAA? so i need to use tacacs or radius.
i've an active directory.i've around 1000 users, so is it possible to use the domain user/passwd, to integrate with the ACS so that no need to create anything in ACS 4.1.
so i need to enable which protocol in my Active directory 2003?
in edge switches i need to enable AAA and i need to point it to the ACS4.1 ip address.
please guide me regarding the above thing, ill rate all the informative posts.
Regards
Binoy.
02-14-2007 06:08 AM
This should help get you started:
<http://www.cisco.com/application/pdf/en/us/guest/netsol/ns656/c654/ccmigration_09186a00805eea83.pdf>
Let us know if you need more,
02-15-2007 10:57 PM
Hello jafrazie
thanks for the info, if you can give some inputs like how things should configure exactly, if you can share your experience that will be great.
02-19-2007 06:50 AM
hi,
i think cause cisco switches (wired) only support EAP-MD5 you CAN NOT authenticate via external Database on ACS to Windows-DB or AD 2003-DB. You must create the DB for authentication on the ACS (internal DB).
One Solution could be to introduce NAC (NAC L2 802.1x).
1. EAP Authentication Protocol and User Database Compatibility
2. NAC Introduction
http://www.cisco.com/en/US/netsol/ns628/networking_solutions_package.html
regards
Alex
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide