12-20-2022 08:25 PM
Is it possible to use ISE 802.1x with out AD Account or the Computer joining the Domain (Just a stand alone computer using local account)
Another option is if we need to use ISE local account as Authentication credentials or we just stick with computer local account for this.
The goal is to have wired 802.1x .
Thank you.
12-21-2022 07:50 AM
Yes!
You must create a network device (RADIUS client) and add your internal user in ISE and you immediately may perform a basic authentication. If you want to make it even faster/easier, configure a Default Network Device which will accept a RADIUS request from anywhere if the RADIUS shared secret matches.
See ISE Secure Wired Access Prescriptive Deployment Guide for your switch configuration. Use the command
test aaa group radius test-user test-password new-code
with your internal user to ensure the switch and talk RADIUS to ISE before even configuring a switchport.
12-21-2022 02:06 PM
Configure ISE in 1 minute to complete your first authentication from any network device with a testuser account.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide